Exploitation Summary
EIP tracks 1 public exploit for CVE-2020-36957. PoCs published by Zaira Alquicira.
AI-analyzed exploit summary This is a writeup detailing an unquoted service path vulnerability in PDF Complete 3.5.310.2002. The vulnerability allows local privilege escalation due to the service path containing spaces and not being enclosed in quotes.
Description
PDF Complete 3.5.310.2002 contains an unquoted service path vulnerability in its pdfsvc.exe service configuration. Attackers can exploit the unquoted path to inject and execute malicious code with elevated LocalSystem privileges.
Exploits (1)
This is a writeup detailing an unquoted service path vulnerability in PDF Complete 3.5.310.2002. The vulnerability allows local privilege escalation due to the service path containing spaces and not being enclosed in quotes.
References (3)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H