CNNVD-202601-4920 Information

CNNVD ID

CNNVD-202601-4920

CVE-2020-37021

  • CNNVD Published: 2026-01-29

Description (Chinese)

10-Strike Bandwidth Monitor是美国10-Strike公司的一个网络带宽监控与流量分析工具。 10-Strike Bandwidth Monitor 3.9版本存在代码问题漏洞,该漏洞源于多个服务路径未加引号,可能导致本地攻击者权限提升至SYSTEM。

Description (English)

10-Strike Bandwidth Monitor is a network bandwidth monitoring and traffic analysis tool for 10-Strike in the United States. Version 10-Strike Bandwidth Monitor 3.9 has a code gap, which stems from the absence of quotation marks on multiple service paths, which may result in local attackers being upgraded to SYSTEM.

Hazard Level

Medium

Vulnerability Type

代码问题

Affected Vendor

10-Strike

Published

2026-01-29

Last Modified

2026-02-24

References

https://www.10-strike.com/ https://www.exploit-db.com/exploits/48591 https://www.vulncheck.com/advisories/bandwidth-monitor-svcstrikebandmontitor-unquoted-service-path

Patch

https://www.10-strike.com/download.shtml

Share on: