CVE-2022-27050

HIGH

BitComet Service <1.8.6 - Privilege Escalation

Title source: llm
STIX 2.1

Description

BitComet Service for Windows before version 1.8.6 contains an unquoted service path vulnerability which allows attackers to escalate privileges to the system level.

Scores

CVSS v3 7.8
EPSS 0.0005
EPSS Percentile 14.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-428
Status published
Products (1)
bitcomet/bitcomet < 1.86
Published Mar 31, 2022
Tracked Since Feb 18, 2026