PT-2026-5848 · Disk Savvy · Disksavvy Enterprise
Boku
·
Published
2026-02-03
·
Updated
2026-02-03
·
CVE-2020-37099
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Disk Savvy Enterprise 12.3.18 contains an unquoted service path vulnerability in its service configuration that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted path in 'C:Program FilesDisk Savvy Enterprisebindisksvs.exe' to inject malicious executables and escalate privileges.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Disksavvy Enterprise