PT-2026-3300 · Unknown · Disk Sorter Server

Brushiran

·

Published

2026-01-16

·

Updated

2026-01-16

·

CVE-2021-47847

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Disk Sorter Server version 13.6.12
Description Disk Sorter Server version 13.6.12 contains a flaw due to an unquoted service path in its binary path configuration. This allows local attackers to potentially execute arbitrary code. The vulnerable path is located at 'C:Program FilesDisk Sorter Serverbindisksrs.exe', which can be exploited to inject malicious executables and escalate privileges.
Recommendations Ensure the service path is enclosed in quotes during configuration.

Exploit

Fix

Weakness Enumeration

Related Identifiers

CVE-2021-47847

Affected Products

Disk Sorter Server