1631 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2020-36976
Global Registration Service General
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

Acer Global Registration Service 1.0.0.3 contains an unquoted service path vulnerability in its service configuration that allows local users to potentially execute arbitrary code. Attackers can exploit the unquoted path in C:\Program Files (x86)\Acer\Registration\ to inject malicious executables that would run with elevated LocalSystem privileges during service startup.

CVE-2020-36953
MiniTool ShadowMaker General
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

MiniTool ShadowMaker 3.2 contains an unquoted service path vulnerability in the MTAgentService that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted path in 'C:\Program Files\MiniTool ShadowMaker\AgentService.exe' to inject malicious executables and escalate privileges.

CVE-2020-37129
Memu Play General
8.5
HIGH
EPSS
0.0%
2020 CWE-276 1 PoC

Memu Play 7.1.3 contains an insecure folder permissions vulnerability that allows low-privileged users to modify the MemuService.exe executable. Attackers can replace the service executable with a malicious file during system restart to gain SYSTEM-level privileges by exploiting unrestricted file modification permissions.

CVE-2020-6294
SAP Business Objects Business Intelligence Platform General
8.5
HIGH
EPSS
0.3%
2020 2 PoCs

Xvfb of SAP Business Objects Business Intelligence Platform, versions - 4.2, 4.3, platform on Unix does not perform any authentication checks for functionalities that require user identity.

CVE-2020-36979
Coex Service Application Windows
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

Atheros Coex Service Application 8.0.0.255 contains an unquoted service path vulnerability in its Windows service configuration. Attackers can exploit the unquoted path by placing malicious executables in the service path to gain elevated system privileges during service startup.

CVE-2020-37059
Popcorn Time General
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

Popcorn Time 6.2.1.14 contains an unquoted service path vulnerability that allows local non-privileged users to potentially execute code with elevated system privileges. Attackers can insert malicious executables in Program Files (x86) or system root directories to be executed with SYSTEM-level permissions during service startup.

CVE-2020-36987
Program Access Controller General
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

Program Access Controller 1.2.0.0 contains an unquoted service path vulnerability in PACService.exe that allows local attackers to execute code with elevated privileges. Attackers can exploit the unquoted path during system startup or reboot to inject and run malicious executables with LocalSystem permissions.

CVE-2020-37037
AVAST SecureLine General
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

Avast SecureLine 5.5.522.0 contains an unquoted service path vulnerability that allows local users to potentially execute code with elevated system privileges. Attackers can exploit the unquoted path in the service configuration to inject malicious code that would execute with LocalSystem account permissions during service startup.

CVE-2020-36916
TDM Digital Signage PC Player General
8.5
HIGH
EPSS
0.0%
2020 CWE-732 2 PoCs

TDM Digital Signage PC Player 4.1.0.4 contains an elevation of privileges vulnerability that allows authenticated users to modify executable files. Attackers can leverage the 'Modify' permissions for authenticated users to replace executable files with malicious binaries and gain elevated system access.

CVE-2020-36935
Service KMSELDI General
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

KMSpico 17.1.0.0 contains an unquoted service path vulnerability in the Service KMSELDI configuration that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted binary path in C:\Program Files\KMSpico\Service_KMS.exe to inject malicious executables and escalate privileges.

CVE-2020-36930
SysGauge General
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

SysGauge Server 7.9.18 contains an unquoted service path vulnerability in its binary path configuration that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted path in 'C:\Program Files\SysGauge Server\bin\sysgaus.exe' to inject malicious executables and escalate privileges.

CVE-2020-36937
MEMU PLAY Windows
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

Microvirt MEMU Play 3.7.0 contains an unquoted service path vulnerability in the MEmusvc Windows service that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted binary path to inject malicious executables that will be run with elevated LocalSystem privileges.

CVE-2020-37172
AVideo Platform Web
8.5
HIGH
EPSS
0.1%
2020 CWE-640 1 PoC

AVideo Platform 8.1 contains a cross-site request forgery vulnerability that allows attackers to reset user passwords by exploiting the password recovery mechanism. Attackers can craft malicious requests to the recoverPass endpoint using the user's recovery token to change account credentials without authentication.

CVE-2020-37160
SprintWork Windows
8.5
HIGH
EPSS
0.0%
2020 CWE-276 1 PoC

SprintWork 2.3.1 contains multiple local privilege escalation vulnerabilities through insecure file, service, and folder permissions on Windows systems. Local unprivileged users can exploit missing executable files and weak service configurations to create a new administrative user and gain complete system access.

CVE-2020-37102
Web Companion General
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

Adaware Web Companion 4.9.2159 contains an unquoted service path vulnerability in the WCAssistantService that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted binary path to inject malicious executables that will be run with LocalSystem privileges during service startup.

CVE-2020-37101
VPN unlimited Networking
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

VPN Unlimited 6.1 contains an unquoted service path vulnerability that allows local attackers to inject malicious executables into the service binary path. Attackers can exploit the unquoted path in 'C:\Program Files (x86)\VPN Unlimited\' to replace the service executable and gain elevated system privileges.

CVE-2020-37055
SpyHunter General
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

SpyHunter 4 contains an unquoted service path vulnerability that allows local users to potentially execute arbitrary code with elevated system privileges. Attackers can exploit the unquoted service path by placing malicious executables in specific file system locations to gain elevated access during service startup.

CVE-2020-36957
PDF Complete General
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

PDF Complete 3.5.310.2002 contains an unquoted service path vulnerability in its pdfsvc.exe service configuration. Attackers can exploit the unquoted path to inject and execute malicious code with elevated LocalSystem privileges.

CVE-2020-36879
DiskBoss General
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

Flexsense DiskBoss 11.7.28 allows unauthenticated attackers to elevate their privileges using any of its services, enabling remote code execution during startup or reboot with escalated privileges. Attackers can exploit the unquoted service path vulnerability by specifying a malicious service name in the 'sc qc' command, allowing them to execute arbitrary system commands.

CVE-2020-37045
NetBackup General
8.5
HIGH
EPSS
0.0%
2020 CWE-428 1 PoC

Veritas NetBackup 7.0 contains an unquoted service path vulnerability in the NetBackup INET Daemon service that allows local users to potentially execute arbitrary code. Attackers can exploit the unquoted path in C:\Program Files\Veritas\NetBackup\bin\bpinetd.exe to inject malicious code that would execute with elevated LocalSystem privileges.