Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-60320

Опубликовано: 29 окт. 2025
Источник: nvd
CVSS3: 6.7
EPSS Низкий

Описание

memoQ 10.1.13.ef1b2b52aae and earlier contains an unquoted service path vulnerability in the memoQ Auto Update Service (memoQauhlp101). The affected service is installed with a path containing spaces and without surrounding quotes. This misconfiguration allows local users to escalate privileges to SYSTEM by placing a malicious executable at C:\Program.exe.

EPSS

Процентиль: 4%
0.00018
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-428

Связанные уязвимости

CVSS3: 6.7
github
3 месяца назад

memoQ 10.1.13.ef1b2b52aae and earlier contains an unquoted service path vulnerability in the memoQ Auto Update Service (memoQauhlp101). The affected service is installed with a path containing spaces and without surrounding quotes. This misconfiguration allows local users to escalate privileges to SYSTEM by placing a malicious executable at C:\Program.exe.

EPSS

Процентиль: 4%
0.00018
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-428