Stats Digest Feeds
โ† Back to all CVEs

CVE-2020-37253

HIGH NVD
CVSS Score 7.8
Severity HIGH
Published Jun 19, 2026
Vendor unknown

Description

Winstep 18.06.0096 contains an unquoted service path vulnerability in the Winstep Xtreme Service that allows local attackers to escalate privileges. Attackers can place malicious executables in the Program Files directory to be executed with LocalSystem privileges when the service starts.

References