PT-2026-2361 · Splashtop · Splashtop

A.I. Hernandez

·

Published

2026-01-13

·

Updated

2026-01-15

·

CVE-2022-50693

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Splashtop version 8.71.12001.0
Description The software contains an unquoted service path vulnerability within the Splashtop Software Updater Service. This allows local attackers to potentially execute arbitrary code. The vulnerability exists due to an unquoted path in 'C:Program Files (x86)SplashtopSplashtop Software Updater', enabling attackers to inject malicious executables and escalate privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2022-50693

Affected Products

Splashtop