Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-58288

Опубликовано: 11 дек. 2025
Источник: nvd
EPSS Низкий

Описание

Genexus Protection Server 9.7.2.10 contains an unquoted service path vulnerability in the protsrvservice Windows service configuration. Attackers can exploit the unquoted binary path to execute arbitrary code with elevated LocalSystem privileges by placing malicious executables in specific file system locations.

EPSS

Процентиль: 23%
0.00074
Низкий

Дефекты

CWE-428

Связанные уязвимости

github
около 2 месяцев назад

Genexus Protection Server 9.7.2.10 contains an unquoted service path vulnerability in the protsrvservice Windows service configuration. Attackers can exploit the unquoted binary path to execute arbitrary code with elevated LocalSystem privileges by placing malicious executables in specific file system locations.

EPSS

Процентиль: 23%
0.00074
Низкий

Дефекты

CWE-428