PT-2026-3835 · Oki · Oki Local Port Manager+1

Brian Rodriguez

·

Publicado

2026-01-21

·

Atualizado

2026-01-21

·

CVE-2021-47884

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions OKI Configuration Tool version 1.6.53
Description OKI Configuration Tool version 1.6.53 contains a flaw in the OKI Local Port Manager service related to an unquoted service path. This allows local attackers to potentially execute arbitrary code. The unquoted path is located at 'C:Program FilesOkidataCommonextend3portmgrsrv.exe', enabling attackers to inject malicious executables and escalate privileges.
Recommendations Apply appropriate quoting to the service path for the OKI Local Port Manager service.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2021-47884

Produtos afetados

Configuration Tool
Oki Local Port Manager