PT-2026-4783 · Idt · Idt Pc Audio

Diego Cañada

·

Published

2026-01-26

·

Updated

2026-01-26

·

CVE-2020-36959

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IDT PC Audio version 1.0.6499.0
Description An unquoted service path exists in the STacSV service. This allows local users to potentially execute arbitrary code with elevated system privileges by injecting malicious code that runs with LocalSystem account permissions during service startup.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2020-36959

Affected Products

Idt Pc Audio