Home

Description

Realtek Wireless LAN Utility 700.1631 contains an unquoted service path vulnerability that allows local users to potentially execute code with elevated system privileges. Attackers can exploit the unquoted service path by inserting malicious code in the system root path that would execute during application startup or system reboot.

PUBLISHED Reserved 2026-01-18 | Published 2026-01-21 | Updated 2026-01-22 | Assigner VulnCheck




HIGH: 8.5CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
HIGH: 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Problem types

Unquoted Search Path or Element

Product status

700.1631
affected

Credits

Luis Martinez finder

References

www.exploit-db.com/exploits/49646 (ExploitDB-49646) exploit

www.realtek.com/en/ (Realtek Official Homepage) product

www.vulncheck.com/...tility-realteknsu-unquoted-service-path (VulnCheck Advisory: Realtek Wireless LAN Utility 700.1631 - 'Realtek11nSU' Unquoted Service Path) third-party-advisory

cve.org (CVE-2021-47880)

nvd.nist.gov (CVE-2021-47880)

Download JSON