


Perceptive Security
SOC/SIEM Consultancy

BOOTP Turbo 2.0.0.1253 contains an unquoted service path vulnerability in its Windows service configuration. Attackers can exploit the unquoted path to execute …
Published:
15 januari 2026 om 23:00:00
Alert date:
16 januari 2026 om 20:08:27
Source:
nvd.nist.gov
Operating Systems, Network Infrastructure
BOOTP Turbo 2.0.0.1253 contains an unquoted service path vulnerability in its Windows service configuration. This vulnerability allows attackers to exploit the unquoted path to execute arbitrary code with elevated LocalSystem privileges during system startup or reboot. The vulnerability affects the service configuration and can lead to privilege escalation attacks. Exploitation occurs during system startup or reboot phases when the service is initialized. The vulnerability provides LocalSystem level access to attackers who can exploit the unquoted service path.
Technical details
Mitigation steps:
Affected products:
BOOTP Turbo
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2021-47828
https://www.exploit-db.com/exploits/49851
https://www.vulncheck.com/advisories/bootp-turbo-bootptexe-unquoted-service-path
https://www.weird-solutions.com
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
