Unquoted Service Path Vulnerability in Fujitsu PlugFree Network Software
CVE-2022-27089
7.8HIGH
What is CVE-2022-27089?
An unquoted service path vulnerability exists in the Fujitsu PlugFree Network software version 7.3.0.3 and earlier. This flaw can be exploited by a local attacker to escalate their privileges to system level by manipulating the PFNService.exe path. Proper handling and quoting of service paths are crucial to prevent unauthorized gain of elevated access rights.
