Description
Unquoted Windows search path vulnerability in Microsoft AntiSpyware might allow local users to execute code via a malicious c:\program.exe file, which is run by AntiSpywareMain.exe when it attempts to execute gsasDtServ.exe. NOTE: it is not clear whether this overlaps CVE-2005-2940.
References (2)
Core 2
Core References
Exploit mailing-list
x_refsource_fulldisc
http://lists.grok.org.uk/pipermail/full-disclosure/2005-May/033909.html
Mailing List mailing-list
x_refsource_fulldisc
http://lists.grok.org.uk/pipermail/full-disclosure/2005-May/033910.html
Scores
EPSS
0.0193
EPSS Percentile
78.1%
Details
Status
published
Products (1)
microsoft/antispyware
Published
Sep 15, 2005
Tracked Since
Feb 18, 2026