


Perceptive Security
SOC/SIEM Consultancy

Magic Mouse 2 Utilities 2.20 contains an unquoted service path vulnerability in its Windows service configuration. Attackers can exploit the unquoted path to in…
Published:
24 januari 2026 om 23:00:00
Alert date:
25 januari 2026 om 15:02:53
Source:
nvd.nist.gov
Operating Systems
CVE-2020-36936 affects Magic Mouse 2 Utilities version 2.20 on Windows systems. The vulnerability stems from an unquoted service path in the Windows service configuration. Attackers can exploit this misconfiguration to inject malicious executables into the service path. Successful exploitation allows attackers to gain elevated system privileges. The vulnerability requires local access to place malicious files in the service path. This is a common Windows privilege escalation technique targeting improperly configured services.
Technical details
Mitigation steps:
Affected products:
Magic Mouse 2 Utilities
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2020-36936
https://magicutilities.net/magic-mouse/home
https://www.exploit-db.com/exploits/49017
https://www.vulncheck.com/advisories/magic-mouse-utilities-magicmouseservice-unquoted-service-path
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
