CVE-2022-25031

HIGH

Remote Desktop Commander Suite Agent <4.8 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Remote Desktop Commander Suite Agent before v4.8 contains an unquoted service path which allows attackers to escalate privileges to the system level.

Scores

CVSS v3 7.8
EPSS 0.0004
EPSS Percentile 13.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-428
Status published
Products (1)
rdpsoft/remote_desktop_commander_suite_agent < 4.8
Published Mar 03, 2022
Tracked Since Feb 18, 2026