Exploitation Summary
EIP tracks 1 public exploit for CVE-2023-53984. PoCs published by Wim Jaap van Vliet.
AI-analyzed exploit summary This exploit describes an unquoted service path vulnerability in HotKey Clipboard Service (HKClipSvc) version 2.1.0.6, which could allow local privilege escalation. The service path lacks quotes, potentially enabling an attacker to execute arbitrary code with system privileges.
Description
Clevo HotKey Clipboard 2.1.0.6 contains an unquoted service path vulnerability in the HKClipSvc service that allows local non-privileged users to potentially execute code with system privileges. Attackers can exploit the misconfigured service path to inject and execute arbitrary code by placing malicious executables in specific file system locations.
Exploits (1)
This exploit describes an unquoted service path vulnerability in HotKey Clipboard Service (HKClipSvc) version 2.1.0.6, which could allow local privilege escalation. The service path lacks quotes, potentially enabling an attacker to execute arbitrary code with system privileges.
References (3)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H