CVE-2020-36981

Motorola Device Manager 2.4.5 contains an unquoted service path vulnerability in the PST Service that allows local users to potentially execute arbitrary code. Attackers can exploit the unquoted path in ForwardDaemon.exe to inject malicious code that will execute with elevated system privileges during service startup.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Motorola Device Manager 2.4.5 contiene una vulnerabilidad de ruta de servicio sin comillas en el Servicio PST que permite a usuarios locales ejecutar potencialmente código arbitrario. Los atacantes pueden explotar la ruta sin comillas en ForwardDaemon.exe para inyectar código malicioso que se ejecutará con privilegios de sistema elevados durante el inicio del servicio.

27 Jan 2026, 19:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-27 19:16

Updated : 2026-04-15 00:35


NVD link : CVE-2020-36981

Mitre link : CVE-2020-36981

CVE.ORG link : CVE-2020-36981


JSON object : View

Products Affected

No product.

CWE
CWE-428

Unquoted Search Path or Element