


Perceptive Security
SOC/SIEM Consultancy

TexasSoft CyberPlanet 6.4.131 contains an unquoted service path vulnerability in the CCSrvProxy service that allows local attackers to execute arbitrary code. A…
Published:
4 februari 2026 om 23:00:00
Alert date:
5 februari 2026 om 01:04:29
Source:
nvd.nist.gov
Enterprise Applications, Operating Systems
CVE-2019-25272 affects TexasSoft CyberPlanet version 6.4.131, containing an unquoted service path vulnerability in the CCSrvProxy service. The vulnerability exists in the path 'C:\Program Files (x86)\TenaxSoft\CyberPlanet\SrvProxy.exe' and allows local attackers to execute arbitrary code. Attackers can exploit this unquoted path to inject malicious executables into the service path. Successful exploitation leads to elevated system privileges on the affected system. This is a local privilege escalation vulnerability that requires initial access to the system.
Technical details
Mitigation steps:
Affected products:
TexasSoft CyberPlanet
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2019-25272
https://tenaxsoft.com/index.html
https://www.exploit-db.com/exploits/47724
https://www.vulncheck.com/advisories/texassoft-cyberplanet-ccsrvproxy-unquoted-service-path
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
