Description
CoolerMaster MasterPlus 1.8.5 contains an unquoted service path vulnerability in the MPService that allows local attackers to execute code with elevated system privileges. Attackers can drop a malicious executable in the service path and trigger code execution during service startup or system reboot.
Problem types
Uncontrolled Search Path Element
Product status
Credits
Damian Semon Jr (Blue Team Alpha)
References
www.exploit-db.com/exploits/51159 (ExploitDB-51159)
masterplus.coolermaster.com/ (CoolerMaster MasterPlus Official Homepage)
www.vulncheck.com/...terplus-mpservice-unquoted-service-path (VulnCheck Advisory: CoolerMaster MasterPlus 1.8.5 - 'MPService' Unquoted Service Path)