


Perceptive Security
SOC/SIEM Consultancy

Quick 'n Easy FTP Service 3.2 contains an unquoted service path vulnerability that allows local attackers to execute arbitrary code during service startup. Atta…
Published:
26 January 2026 at 23:00:00
Alert date:
27 January 2026 at 21:03:58
Source:
nvd.nist.gov
Network Infrastructure, Enterprise Applications
CVE-2020-36983 affects Quick 'n Easy FTP Service version 3.2, containing an unquoted service path vulnerability. Local attackers can exploit this misconfigured service binary path to execute arbitrary code during service startup. The vulnerability allows injection of malicious executables with elevated LocalSystem privileges. Exploitation occurs during system boot or service restart processes. This represents a privilege escalation vulnerability requiring local access.
Technical details
Mitigation steps:
Affected products:
Quick 'n Easy FTP Service 3.2
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2020-36983
https://www.exploit-db.com/exploits/48983
https://www.pablosoftwaresolutions.com/download.php?id=10
https://www.pablosoftwaresolutions.com/html/quick__n_easy_ftp_service.html
https://www.vulncheck.com/advisories/quick-n-easy-ftp-service-unquoted-service-path
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
