CVE-2020-36952

IObit Uninstaller 10 Pro contains an unquoted service path vulnerability that allows local users to potentially execute code with elevated system privileges. Attackers can exploit the unquoted service path in the IObit Uninstaller Service to insert malicious code that would execute with SYSTEM-level permissions during service startup.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) IObit Uninstaller 10 Pro contiene una vulnerabilidad de ruta de servicio sin comillas que permite a usuarios locales ejecutar código potencialmente con privilegios de sistema elevados. Los atacantes pueden explotar la ruta de servicio sin comillas en el Servicio de IObit Uninstaller para insertar código malicioso que se ejecutaría con permisos de nivel SYSTEM durante el inicio del servicio.

26 Jan 2026, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-26 16:15

Updated : 2026-04-15 00:35


NVD link : CVE-2020-36952

Mitre link : CVE-2020-36952

CVE.ORG link : CVE-2020-36952


JSON object : View

Products Affected

No product.

CWE
CWE-428

Unquoted Search Path or Element