CVE-2016-20087

HIGH

Fortitude HTTP 1.0.4.0 Unquoted Service Path Elevation of Privilege

Title source: cna
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2016-20087. PoCs published by Tulpa.

AI-analyzed exploit summary This is a technical writeup detailing an unquoted service path vulnerability in Fortitude HTTP 1.0.4.0, which could allow local privilege escalation (LPE) due to improper handling of the service's binary path. The author provides proof of the vulnerability via service configuration details and explains the exploitation mechanism.

Description

Fortitude HTTP 1.0.4.0 contains an unquoted service path vulnerability that allows local users to execute arbitrary code with elevated privileges by exploiting the service binary path. Attackers can insert malicious executables in the system root path that execute with SYSTEM privileges during service startup or system reboot.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Tulpa · textlocalwindows
https://www.exploit-db.com/exploits/40461

This is a technical writeup detailing an unquoted service path vulnerability in Fortitude HTTP 1.0.4.0, which could allow local privilege escalation (LPE) due to improper handling of the service's binary path. The author provides proof of the vulnerability via service configuration details and explains the exploitation mechanism.

Classification
Writeup 90%
Attack Type
Lpe
Complexity
Moderate
Reliability
Theoretical
Target: Fortitude HTTP 1.0.4.0
Auth required
Prerequisites: local access to the system · ability to place executable in system root path
devstral-2 · analyzed Jun 19, 2026 Full analysis →

References (4)

Core 4
Core References
Exploit exploit
ExploitDB-40461
https://www.exploit-db.com/exploits/40461
Product product
Official Product Homepage
http://www.networkdls.com/
Product product
Product Reference
http://www.networkdls.com/Software/View/Fortitude_HTTP
Third Party Advisory third-party-advisory
VulnCheck Advisory: Fortitude HTTP 1.0.4.0 Unquoted Service Path Elevation of Privilege
https://www.vulncheck.com/advisories/fortitude-http-unquoted-service-path-elevation-of-privilege

Scores

CVSS v3 7.8
EPSS 0.0012
EPSS Percentile 2.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-428
Status published
Products (1)
Networkdls/Fortitude HTTP 1.0.4.0
Published Jun 19, 2026
Tracked Since Jun 19, 2026