SprintWork 2.3.1 contains multiple local privilege escalation vulnerabilities through insecure file, service, and folder permissions on Windows systems. Local unprivileged users can exploit missing executable files and weak service configurations to create a new administrative user and gain complete system access.
References
Configurations
No configuration.
History
15 Apr 2026, 00:35
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
07 Feb 2026, 00:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-02-07 00:15
Updated : 2026-04-15 00:35
NVD link : CVE-2020-37160
Mitre link : CVE-2020-37160
CVE.ORG link : CVE-2020-37160
JSON object : View
Products Affected
No product.
CWE
CWE-276
Incorrect Default Permissions
