CVE-2022-50971
HIGHMalwarebytes 4.5 Unquoted Service Path Privilege Escalation
Title source: cnaExploitation Summary
EIP tracks 1 public exploit for CVE-2022-50971. PoCs published by Hejap Zairy Al-Sharif.
AI-analyzed exploit summary The exploit describes an unquoted service path vulnerability in Malwarebytes 4.5, where the service path lacks quotes, potentially allowing local privilege escalation if an attacker can place a malicious executable in the system root path. The provided output from 'sc qc MBAMService' confirms the vulnerable path.
Description
Malwarebytes 4.5 contains an unquoted service path vulnerability in the MBAMService executable that allows local attackers to escalate privileges by injecting malicious code into the system root path. Attackers can place executable files in unquoted path directories that execute with LocalSystem privileges during service startup or system reboot.
Exploits (1)
The exploit describes an unquoted service path vulnerability in Malwarebytes 4.5, where the service path lacks quotes, potentially allowing local privilege escalation if an attacker can place a malicious executable in the system root path. The provided output from 'sc qc MBAMService' confirms the vulnerable path.
References (4)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H