PTPublisher 2.3.4 contains an unquoted service path vulnerability in the PTProtect service that allows local attackers to potentially execute arbitrary code with elevated privileges. Attackers can exploit the unquoted path in 'C:\Program Files (x86)\Primera Technology\PTPublisher\UsbFlashDongleService.exe' to inject malicious executables and gain system-level access.
References
| Link | Resource |
|---|---|
| https://www.exploit-db.com/exploits/50885 | Exploit VDB Entry |
| https://www.primera.com/ | Product |
| https://www.vulncheck.com/advisories/ptpublisher-unquoted-service-path | Third Party Advisory |
Configurations
History
27 Feb 2026, 19:48
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Primera ptpublisher
Primera |
|
| References | () https://www.exploit-db.com/exploits/50885 - Exploit, VDB Entry | |
| References | () https://www.primera.com/ - Product | |
| References | () https://www.vulncheck.com/advisories/ptpublisher-unquoted-service-path - Third Party Advisory | |
| CPE | cpe:2.3:a:primera:ptpublisher:2.3.4:*:*:*:*:*:*:* |
13 Jan 2026, 23:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-01-13 23:15
Updated : 2026-02-27 19:48
NVD link : CVE-2022-50915
Mitre link : CVE-2022-50915
CVE.ORG link : CVE-2022-50915
JSON object : View
Products Affected
primera
- ptpublisher
CWE
CWE-428
Unquoted Search Path or Element
