PT-2026-30357 · Undefined · Undefined

Published

2026-04-04

·

Updated

2026-04-04

·

CVE-2016-20060

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Hotspot Shield 6.0.3 contains an unquoted service path vulnerability in the hshld service binary that allows local attackers to escalate privileges by injecting malicious executables. Attackers can place executable files in the service path and upon service restart or system reboot, the malicious code executes with LocalSystem privileges.

Fix

Weakness Enumeration

Related Identifiers

CVE-2016-20060

Affected Products

Undefined