← Back

CVE-2021-42563

nvd nist
Published: Nov 12, 2021Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

There is an Unquoted Service Path in NI Service Locator (nisvcloc.exe) in versions prior to 18.0 on Windows. This may allow an authorized local user to insert arbitrary code into the unquoted service path and escalate privileges.

Affected (1)

1 product
Ni Service Locator
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 18.0.0.49152
Running on/withPlatform Versions
Microsoft
Windows
All versions

Timeline

No history available yet.