Argus Surveillance DVR Unquoted Service Path Privilege Escalation Vulnerability

Vulnerability

A privilege escalation vulnerability has been identified in Argus Surveillance DVR version 4.0. The issue arises from an unquoted service path in the DVRWatchdog service, allowing local attackers to exploit the service binary path. By placing a malicious executable in the Program Files directory, attackers can have it executed with LocalSystem privileges when the service starts.

Impact

Exploitation of this vulnerability allows for unauthorized privilege escalation, with malicious executables being executed as the LocalSystem user.

Reproduction

To reproduce this vulnerability, first ensure that the 'Start as service on Windows Startup' option is enabled in the Program Options. Once this is set, place a malicious executable in the Program Files directory where Argus Surveillance DVR is installed. The executable will be executed with LocalSystem privileges when the DVRWatchdog service starts.

Added: May 10, 2026, 1:33 PM
Updated: May 10, 2026, 1:33 PM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
10.0
exploitability
4.8
remediation
0.0
relevance
7.8
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.