Description
Brother BRAgent 1.38 contains an unquoted service path vulnerability in the WBA_Agent_Client service running with LocalSystem privileges. Attackers can exploit the unquoted path in C:\Program Files (x86)\Brother\BRAgent\ to inject and execute malicious code with elevated system permissions.
Problem types
Unquoted Search Path or Element
Product status
Credits
Brian Rodriguez
References
www.exploit-db.com/exploits/50010
www.exploit-db.com/exploits/50010 (ExploitDB-50010)
help.brother-usa.com/...etail/a_id/174732/~/what-is-bragent? (BRAgent Webpage)
www.vulncheck.com/...nt-wbaagentclient-unquoted-service-path (VulnCheck Advisory: Brother BRAgent 1.38 - 'WBA_Agent_Client' Unquoted Service Path)