VX Search Unquoted Service Path Privilege Escalation Vulnerability

Vulnerability

A privilege escalation vulnerability has been identified in VX Search version 13.5.28, affecting both the VX Search Server and VX Search Enterprise services. The issue arises from an unquoted service path, which allows local attackers to execute arbitrary code with LocalSystem privileges. Exploitation involves placing malicious executables in directories associated with the unquoted paths, such as 'C:\Program Files\VX Search', and waiting for the services to restart.

Impact

Exploitation of this vulnerability allows for unauthorized privilege escalation, enabling local attackers to execute arbitrary code with LocalSystem rights.

Reproduction

The vulnerability can be reproduced by placing a malicious executable in the unquoted service path directory, such as 'C:\Program Files\VX Search'. After placing the executable, restarting the VX Search Server or VX Search Enterprise services will trigger the execution of the malicious code with LocalSystem privileges.

Added: May 16, 2026, 4:23 PM
Updated: May 16, 2026, 4:23 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
4.6
remediation
0.0
relevance
8.1
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.