Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Stefan Petrushevski

#31011of 53,638
8.4Total CVSS
Vulnerabilities · 1
PT-2026-1671
8.4
2026-01-07
Devolo · Devolo Dlan Cockpit · CVE-2019-25231
**Name of the Vulnerable Software and Affected Versions** devolo dLAN Cockpit version 4.3.1 **Description** The software contains an unquoted service path issue in the 'DevoloNetworkService'. This allows local, non-privileged users to potentially execute arbitrary code. Exploitation involves leveraging the insecure service path configuration by placing malicious code in the system root path, which then executes with elevated privileges during application startup or system reboot. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.