PT-2026-3175 · Disk Savvy · Disksavvy

Brian Rodriguez

·

Published

2026-01-15

·

Updated

2026-01-16

·

CVE-2021-47805

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Disk Savvy version 13.6.14
Description Disk Savvy version 13.6.14 contains a flaw in its Windows service configuration due to an unquoted service path. This allows local attackers to potentially execute arbitrary code. The unquoted path in service binaries can be exploited to inject malicious executables that run with elevated LocalSystem privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2021-47805

Affected Products

Disksavvy