CNNVD-202601-4762 Information

CNNVD ID

CNNVD-202601-4762

CVE-2020-36990

  • CNNVD Published: 2026-01-28

Description (Chinese)

Input Director是Input Director公司的一个用一套键盘和鼠标控制多台电脑的软件。 Input Director 1.4.3版本存在代码问题漏洞,该漏洞源于Windows服务配置中服务路径未加引号,可能导致本地攻击者以提升的权限执行代码。

Description (English)

Input Director is a software for Input Director with a keyboard and mouse to control multiple computers. Input Director 1.4.3 has a code problem loophole, which stems from the absence of quotation marks on service paths in the Windows service configuration, which may lead to local assailants using enhanced permission enforcement codes.

Hazard Level

Medium

Vulnerability Type

代码问题

Affected Vendor

Input Director

Published

2026-01-28

Last Modified

2026-02-24

References

https://www.exploit-db.com/exploits/48795 https://www.inputdirector.com/ https://www.vulncheck.com/advisories/input-director-input-director-unquoted-service-path

Share on: