PT-2026-5290 · Unknown · Barcodeocr

Daniel Bertoni

·

Publicado

2026-01-29

·

Atualizado

2026-01-29

·

CVE-2020-37016

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions BarcodeOCR version 19.3.6
Description BarcodeOCR 19.3.6 contains an unquoted service path issue that allows local attackers to execute code with elevated privileges during system startup. The unquoted path in the service configuration can be exploited to inject malicious executables that will run with LocalSystem privileges.
Recommendations Update to a newer version that contains a fix for this vulnerability.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2020-37016

Produtos afetados

Barcodeocr