


Perceptive Security
SOC/SIEM Consultancy

OKI Configuration Tool 1.6.53 contains an unquoted service path vulnerability in the OKI Local Port Manager service that allows local attackers to potentially e…
Published:
20 januari 2026 om 23:00:00
Alert date:
21 januari 2026 om 19:12:52
Source:
nvd.nist.gov
Enterprise Applications
CVE-2021-47884 affects OKI Configuration Tool version 1.6.53, containing an unquoted service path vulnerability in the OKI Local Port Manager service. The vulnerability exists in the path 'C:\Program Files\Okidata\Common\extend3\portmgrsrv.exe' which lacks proper quotes around the service path. Local attackers can exploit this weakness to inject malicious executables into the path and achieve privilege escalation. The vulnerability allows for arbitrary code execution with elevated privileges on affected systems.
Technical details
Mitigation steps:
Affected products:
OKI Configuration Tool
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2021-47884
https://web.archive.org/web/20211207181409/https://www.oki.com/me/printing/services-and-solutions/smart-solutions/print-job-accounting/index.html
https://www.exploit-db.com/exploits/49624
https://www.vulncheck.com/advisories/configuration-tool-oplclsrv-unquoted-service-path
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
