CNNVD-202601-3389 Information

CNNVD ID

CNNVD-202601-3389

CVE-2021-47869

  • CNNVD Published: 2026-01-21

Description (Chinese)

Brother BRAdmin Professional是美国Brother公司的一款设备管理软件。 Brother BRAdmin Professional 3.75版本存在代码问题漏洞,该漏洞源于BRA_Scheduler服务存在未加引号的服务路径,可能导致本地用户执行任意代码。

Description (English)

Brother Bradmin Production is an equipment management software of the United States company Brother. There is a code gap in the Bradmin Environmental 3.75 version, which stems from the existence of unquoted service paths in the Bra Scheduler service, which may lead local users to enforce any code.

Hazard Level

Medium

Vulnerability Type

代码问题

Affected Vendor

Brother

Published

2026-01-21

Last Modified

2026-02-24

References

https://docs.unsafe-inline.com/0day/bradmin-professional-3.75-unquoted-service-path https://global.brother/ https://support.brother.com/g/b/downloadend.aspx?c=us&lang=en&prod=hls7000dn_us_eu_as&os=10013&dlid=dlf005042_000&flang=4&type3=26 https://www.exploit-db.com/exploits/49671 https://www.vulncheck.com/advisories/bradmin-professional-brascheduler-unquoted-service-path

Patch

https://support.brother.com/g/b/downloadend.aspx?c=us&lang=en&prod=hls7000dn_us_eu_as&os=10013&dlid=dlf005042_000&flang=4&type3=26

Share on: