Official Product Homepageproduct
http://www.netgate.sk/ CVE-2016-20057
HIGH
NETGATE Registry Cleaner build 16.0.205 Unquoted Service Path Privilege Escalation
Record summary
CVE-2016-20057 has a selected CVSS score of 8.5 (high); EIP currently links 1 catalogued exploit.
Description
NETGATE Registry Cleaner build 16.0.205 contains an unquoted service path vulnerability in the NGRegClnSrv service that allows local attackers to escalate privileges by exploiting the service binary path. Attackers can place a malicious executable in the unquoted path and trigger service restart or system reboot to execute code with LocalSystem privileges.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
CISA SSVC decision
ExploitationPoC
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Apr 6, 2026 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
NETGATE Registry CleanerBrowse Netgate / NETGATE Registry Cleaner | CVE List | 16.0.205 | affected |
Proofs of concept
1Catalogued exploits
ExploitDBNETGATE Registry Cleaner 16.0.205 - Unquoted Service Path Privilege EscalationExploitDB exploitby Amir.ghtNot analyzed1 file
References
5Product Referenceproduct
http://www.netgate.sk/download/download.php?id=4 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2016-20057 ExploitDB-40539exploit
https://www.exploit-db.com/exploits/40539 VulnCheck Advisory: NETGATE Registry Cleaner build 16.0.205 Unquoted Service Path Privilege EscalationThird-party advisory
https://www.vulncheck.com/advisories/netgate-registry-cleaner-build-unquoted-service-path-privilege-escalation