Netgate AMITI Antivirus Unquoted Service Path Privilege Escalation Vulnerability

Vulnerability

A privilege escalation vulnerability has been identified in Netgate AMITI Antivirus build 23.0.305. The issue arises from an unquoted service path in the AmitiAvSrv and AmitiAntivirusHealth services, allowing local attackers to escalate privileges. By placing a malicious executable in the unquoted service path and triggering a service restart or system reboot, attackers can execute code with LocalSystem privileges.

Impact

Exploitation of this vulnerability allows for unauthorized privilege escalation, with executed code running under the LocalSystem account, which has extensive rights on the system.

Reproduction

The vulnerability can be reproduced by placing a malicious executable in the unquoted service path of the AmitiAvSrv or AmitiAntivirusHealth services. After the executable is placed, either the service can be restarted or the system can be rebooted, which will trigger the execution of the malicious code with elevated privileges.

Added: Apr 4, 2026, 2:26 PM
Updated: Apr 4, 2026, 2:26 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
4.2
remediation
0.0
relevance
5.2
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.