11328 vulnerabilidades · Windows Orden: CVSS EPSS Año ID
CVE-2020-37160
SprintWork Windows
8.5
HIGH
EPSS
0.0%
2020 CWE-276 1 PoC

SprintWork 2.3.1 contains multiple local privilege escalation vulnerabilities through insecure file, service, and folder permissions on Windows systems. Local unprivileged users can exploit missing executable files and weak service configurations to create a new administrative user and gain complete system access.

CVE-2020-37047
Deep Instinct Windows Agent Windows
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

Deep Instinct Windows Agent 1.2.29.0 contains an unquoted service path vulnerability in the DeepMgmtService that allows local users to potentially execute code with elevated privileges. Attackers can exploit the unquoted path in C:\Program Files\HP Sure Sense\DeepMgmtService.exe to inject malicious code that would execute with LocalSystem permissions during service startup.

CVE-2020-36903
Selea CarPlateServer (CPS) Windows
8.5
HIGH
EPSS
0.0%
2020 CWE-428 2 PoCs

Selea CarPlateServer 4.0.1.6 contains an unquoted service path vulnerability in the Windows service configuration that allows local users to potentially execute code with elevated privileges. Attackers can exploit the service's unquoted binary path by inserting malicious code in the system root path that could execute with LocalSystem privileges during application startup or reboot.

CVE-2022-28181
NVIDIA GPU Display Driver Windows
8.5
HIGH
EPSS
1.1%
2022 CWE-787 1 PoC

NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user on the network can cause an out-of-bounds write through a specially crafted shader, which may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. The scope of the impact may extend to other components.

CVE-2020-36980
SAntivirus IC Windows
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

SAntivirus IC 10.0.21.61 contains an unquoted service path vulnerability in its Windows service configuration that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted executable path to inject malicious files in the service binary path, enabling privilege escalation to system-level permissions.

CVE-2020-36936
Magic Mouse 2 utilities Windows
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

Magic Mouse 2 Utilities 2.20 contains an unquoted service path vulnerability in its Windows service configuration. Attackers can exploit the unquoted path to inject malicious executables and gain elevated system privileges by placing a malicious file in the service path.

CVE-2021-47807
Sync Breeze Windows
8.5
HIGH
EPSS
0.0%
2021 CWE-428 1 PoC

Sync Breeze 13.6.18 contains an unquoted service path vulnerability in its Windows service configuration that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted path in service binaries located in 'Program Files' directories to inject malicious executables and escalate privileges.

CVE-2019-25308
Mikogo Windows
8.5
HIGH
EPSS
0.0%
2019 CWE-428 1 PoC

Mikogo 5.2.2.150317 contains an unquoted service path vulnerability in the Mikogo-Service Windows service configuration. Attackers can exploit the unquoted path to inject and execute malicious code with LocalSystem privileges by placing executable files in specific path locations.

CVE-2021-47806
Dup Scout Windows
8.5
HIGH
EPSS
0.0%
2021 CWE-428 1 PoC

Dup Scout 13.5.28 contains an unquoted service path vulnerability in its Windows service configuration that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted path in 'C:\Program Files\Dup Scout Server\bin\dupscts.exe' to inject malicious executables and escalate privileges.

CVE-2019-25269
Amiti Antivirus Windows
8.5
HIGH
EPSS
0.0%
2019 CWE-428 1 PoC

Amiti Antivirus 25.0.640 contains an unquoted service path vulnerability in its Windows service configurations. Attackers can exploit the unquoted path to inject and execute malicious code with elevated LocalSystem privileges by placing executable files in specific directory locations.

CVE-2020-36979
Coex Service Application Windows
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

Atheros Coex Service Application 8.0.0.255 contains an unquoted service path vulnerability in its Windows service configuration. Attackers can exploit the unquoted path by placing malicious executables in the service path to gain elevated system privileges during service startup.

CVE-2021-47882
FreeLAN Windows
8.5
HIGH
EPSS
0.0%
2021 CWE-428 1 PoC

FreeLAN 2.2 contains an unquoted service path vulnerability in its Windows service configuration that allows local attackers to execute arbitrary code. Attackers can exploit the unquoted binary path to inject malicious executables that will be launched with elevated LocalSystem privileges during service startup.

CVE-2024-9950
SecureConnector Windows
8.5
HIGH
EPSS
1.8%
2024 CWE-379 1 PoC

A vulnerability in Forescout SecureConnector v11.3.07.0109 on Windows allows unauthenticated user to modify compliance scripts due to insecure temporary directory.

CVE-2021-47874
VFS for Git Windows
8.5
HIGH
EPSS
0.0%
2021 CWE-428 1 PoC

VFS for Git 1.0.21014.1 contains an unquoted service path vulnerability in the GVFS.Service Windows service that allows local attackers to execute code with elevated privileges. Attackers can exploit the unquoted binary path to inject malicious executables that will be launched with LocalSystem privileges during service startup or system reboot.

CVE-2017-20218
Serviio PRO Windows
8.5
HIGH
EPSS
0.0%
2017 CWE-428 2 PoCs

Serviio PRO 1.8 contains an unquoted search path vulnerability in the Windows service that allows local users to execute arbitrary code with elevated privileges by placing malicious executables in the system root path. Additionally, improper directory permissions with full access for the Users group allow authenticated users to replace the executable file with arbitrary binaries, enabling privilege escalation during service startup or system reboot.

CVE-2023-53912
USB Flash Drives Control Windows
8.5
HIGH
EPSS
0.0%
2023 CWE-428 1 PoC

USB Flash Drives Control 4.1.0.0 contains an unquoted service path vulnerability in its service configuration that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted path in 'C:\Program Files\USB Flash Drives Control\usbcs.exe' to inject malicious executables and escalate privileges on Windows systems.

CVE-2021-47809
Disk Sorter Enterprise Windows
8.5
HIGH
EPSS
0.0%
2021 CWE-428 1 PoC

Disk Sorter Enterprise 13.6.12 contains an unquoted service path vulnerability in its Windows service configuration that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted path in 'C:\Program Files\Disk Sorter Enterprise\bin\disksrs.exe' to inject malicious executables and escalate privileges.

CVE-2021-47845
Spy Emergency Windows
8.5
HIGH
EPSS
0.0%
2021 CWE-428 1 PoC

Spy Emergency 25.0.650 contains an unquoted service path vulnerability in its Windows service configurations that allows local attackers to execute code with elevated privileges. Attackers can exploit the unquoted file paths in SpyEmergencyHealth.exe and SpyEmergencySrv.exe to inject malicious code during system startup or service restart.

CVE-2022-50928
Bluetooth Application BlueSoleilCS Windows
8.5
HIGH
EPSS
0.0%
2022 CWE-428 1 PoC

BlueSoleilCS 5.4.277 contains an unquoted service path vulnerability in its Windows service configuration that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted binary path in 'C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe' to inject malicious executables and escalate privileges.

CVE-2025-34194
Print Virtual Appliance Host Windows
8.5
HIGH
EPSS
0.1%
2025 CWE-59 1 PoC

Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 25.1.102 and Application versions prior to 25.1.1413 (Windows client deployments) contain an insecure temporary-file handling vulnerability in the PrinterInstallerClient components. The software creates files as NT AUTHORITY\SYSTEM inside a directory under the control of the local user (C:\Users\%USER%\AppData\Local\Temp\). An attacker who can place symbolic links or otherwise influence filenames in that directory can cause the service to follow the link and write to arbitrary filesystem locations as SYSTEM. This all