Security Advisory
CVE-2019-25272
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
TexasSoft CyberPlanet 6.4.131 contains an unquoted service path vulnerability in the CCSrvProxy service that allows local attackers to execute arbitrary code. Attackers can exploit the unquoted path in C:Program Files (x86)TenaxSoftCyberPlanetSrvProxy.exe to inject malicious executables and gain elevated system privileges.