← back
CVE-2025-13051

Windows service used an uncontrolled search path element will cause unauthorized code execution with localsystem privileges

CVSS 9.3 CRITICALEPSS 0.2%CWE-427
When the service of ABP and AES is installed in a directory writable by non-administrative users, an attacker can replace or plant a DLL with the same name as one loaded by the service. Upon service restart, the malicious DLL is loaded and executed under the LocalSystem account, resulting in unauthorized code execution with elevated privileges. This issue affects ABP and AES: from ABP 2.0 through 2.0.7.9050, from AES 1.0 through 1.0.6.8290.
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
Affected products
ASUSTOR · ABP and AES

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →