CVE-2020-37061highCWE-428

CVE-2020-37061: high-severity vulnerability in Weird-Solutions BOOTP Turbo

BOOTP Turbo 2.0.1214 - 'BOOTP Turbo' Unquoted Service Path

Published · Updated

21Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 8.5epss 0.1%
exploitation probability
0.1%top 97% of all CVEs
observed exploitation
nono source reports it
BOOTP Turbo 2.0.1214 contains an unquoted service path vulnerability that allows local attackers to potentially execute arbitrary code with elevated system privileges. Attackers can exploit the unquoted executable path to inject malicious code that will be executed when the service starts with LocalSystem permissions.
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Related CVEs — Weird-Solutions BOOTP Turbo

In the same product, most dangerous first.