header-logo
Suggest Exploit
vendor:
WOW21
by:
Antonio Cuomo (arkantolo)
7.5
CVSS
HIGH
Unquoted Service Path
428
CWE
Product Name: WOW21
Affected Version From: 5.0.1.9
Affected Version To: 5.0.1.9
Patch Exists: NO
Related CWE:
CPE: a:ilwebmaster21:wow21:5.0.1.9
Metasploit:
Other Scripts:
Platforms Tested: Windows 10 Pro x64
2022

WOW21 5.0.1.9 – ‘Service WOW21_Service’ Unquoted Service Path

The WOW21_Service in WOW21 version 5.0.1.9 on Windows 10 Pro x64 allows local users to gain elevated privileges via an unquoted service path.

Mitigation:

Ensure that all service paths are quoted in the registry to prevent unquoted service path vulnerabilities.
Source

Exploit-DB raw data: