CVE-2023-53947

OCS Inventory NG 2.3.0.0 contains an unquoted service path vulnerability that allows local attackers to escalate privileges to system level. Attackers can place a malicious executable in the unquoted service path and trigger the service restart to execute code with elevated system privileges.
Configurations

No configuration.

History

19 Dec 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-19 21:15

Updated : 2025-12-23 14:52


NVD link : CVE-2023-53947

Mitre link : CVE-2023-53947

CVE.ORG link : CVE-2023-53947


JSON object : View

Products Affected

No product.

CWE
CWE-428

Unquoted Search Path or Element