EIP-2026-117266
PRE-CVEHDD Health 4.2.0.112 - 'HDDHealth' Unquoted Service Path
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-117266. PoCs published by Jorge Manuel Lozano Gómez.
AI-analyzed exploit summary This exploit leverages an unquoted service path vulnerability in HDD Health 4.2.0.112 to achieve local privilege escalation (LPE) by placing a malicious executable in a directory with write permissions, which is then executed with SYSTEM privileges upon service restart or system reboot.
Description
HDD Health 4.2.0.112 - 'HDDHealth' Unquoted Service Path
Exploits (1)
This exploit leverages an unquoted service path vulnerability in HDD Health 4.2.0.112 to achieve local privilege escalation (LPE) by placing a malicious executable in a directory with write permissions, which is then executed with SYSTEM privileges upon service restart or system reboot.