PT-2025-54417 · Selea · Selea Carplateserver

Published

2025-12-31

·

Updated

2025-12-31

·

CVE-2020-36903

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Selea CarPlateServer version 4.0.1.6
Description An unquoted service path issue exists in the Windows service configuration. This allows local users to potentially execute code with elevated privileges by inserting malicious code into the system root path, which may then execute with LocalSystem privileges during application startup or a system reboot.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2020-36903

Affected Products

Selea Carplateserver