CNNVD-202512-5542 Information

CNNVD ID

CNNVD-202512-5542

CVE-2020-36903

  • CNNVD Published: 2025-12-31

Description (Chinese)

Selea CarPlateServer是意大利Selea公司的一个车牌识别软件。 Selea CarPlateServer 4.0.1.6版本存在代码问题漏洞,该漏洞源于Windows服务配置中存在未加引号的服务路径,可能导致本地用户执行代码并提升权限。

Description (English)

Selea CarPlateServer is a licence recognition software for the Italian company Selea. There is a code gap in version 4.1.6 of Selea CarPlateServer, which stems from the existence of unquoted service paths in the Windows service configuration, which may lead to local user implementation codes and enhanced privileges.

Hazard Level

Medium

Vulnerability Type

代码问题

Affected Vendor

Selea

Published

2025-12-31

Last Modified

2026-02-24

References

https://www.exploit-db.com/exploits/49453 https://www.selea.com https://www.vulncheck.com/advisories/selea-carplateserver-local-privilege-escalation-via-unquoted-service-path https://www.zeroscience.mk/en/vulnerabilities/ZSL-2021-5621.php

Share on: