Advanced System Care Unquoted Service Path Vulnerability in Privilege Escalation

Vulnerability

A privilege escalation vulnerability has been identified in the Advanced System Care Service version 13.0.0.157. The issue arises from an unquoted service path in the 'AdvancedSystemCareService13' service, allowing local attackers to escalate privileges. Exploitation involves placing malicious executables in the system root directory, which are then executed with LocalSystem privileges when the service starts or the system reboots.

Impact

Exploitation of this vulnerability allows for unauthorized privilege escalation, with executed code running under the LocalSystem account, which has extensive rights on the system.

Reproduction

To reproduce this vulnerability, a local user must place a malicious executable in the system root path, ensuring it goes undetected by the operating system or security applications. Once the executable is in place, the service can be started or the system can be rebooted, at which point the malicious code will be executed with elevated privileges.

Added: May 16, 2026, 4:37 PM
Updated: May 16, 2026, 4:37 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.2
remediation
0.0
relevance
8.5
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.