top of page
perceptive_background_267k.jpg

Disk Sorter Server 13.6.12 contains an unquoted service path vulnerability in its binary path configuration that allows local attackers to potentially execute a…

Published:

15 januari 2026 om 23:00:00

Alert date:

16 januari 2026 om 20:08:27

Source:

nvd.nist.gov

Click to open the original link from this advisory

Operating Systems, Enterprise Applications

Disk Sorter Server version 13.6.12 contains an unquoted service path vulnerability in its binary path configuration. The vulnerability affects the path 'C:\Program Files\Disk Sorter Server\bin\disksrs.exe' and allows local attackers to potentially execute arbitrary code. Attackers can exploit this unquoted path to inject malicious executables and escalate privileges on the affected system. This is a local privilege escalation vulnerability that requires existing access to the target machine. The vulnerability allows for code execution through path manipulation techniques common in Windows environments.

Technical details

Mitigation steps:

Affected products:

Disk Sorter Server

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page