Security Advisory
CVE-2021-47864
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
OSAS Traverse Extension 11 contains an unquoted service path vulnerability in the TravExtensionHostSvc service running with LocalSystem privileges. Attackers can exploit the unquoted path to inject and execute malicious code by placing executable files in the services path, potentially gaining elevated system access.