Realtek Wireless LAN Utility Unquoted Service Path Vulnerability Allowing Elevated Privileges
Vulnerability
A vulnerability exists in Realtek Wireless LAN Utility version 700.1631, where an unquoted service path could allow local users to execute code with elevated system privileges. This vulnerability can be exploited by placing malicious code in the system root path, which would then be executed when the application starts or the system reboots.
Impact
Exploitation of this vulnerability could lead to unauthorized code execution with elevated privileges, allowing a local user to execute malicious payloads that could be harmful to the system or user.
Reproduction
The vulnerability can be reproduced by inserting malicious code into the system root path. This code will execute with elevated privileges when the Realtek Wireless LAN Utility application is launched or during a system reboot.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
