Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-36x3-gg5m-4wjp

Опубликовано: 11 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.5
CVSS3: 7.8

Описание

BlackMoon FTP Server 3.1.2.1731 contains an unquoted service path vulnerability that allows local users to potentially execute code with elevated system privileges. Attackers can exploit the unquoted binary path in the service configuration to insert malicious code that would execute with LocalSystem account permissions during service startup.

BlackMoon FTP Server 3.1.2.1731 contains an unquoted service path vulnerability that allows local users to potentially execute code with elevated system privileges. Attackers can exploit the unquoted binary path in the service configuration to insert malicious code that would execute with LocalSystem account permissions during service startup.

8.5 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-428

8.5 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-428