PT-2026-3300 · Unknown · Disk Sorter Server

Brushiran

·

Publicado

2026-01-16

·

Atualizado

2026-01-16

·

CVE-2021-47847

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Disk Sorter Server version 13.6.12
Description Disk Sorter Server version 13.6.12 contains a flaw due to an unquoted service path in its binary path configuration. This allows local attackers to potentially execute arbitrary code. The vulnerable path is located at 'C:Program FilesDisk Sorter Serverbindisksrs.exe', which can be exploited to inject malicious executables and escalate privileges.
Recommendations Ensure the service path is enclosed in quotes during configuration.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2021-47847

Produtos afetados

Disk Sorter Server