Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2021-47810


WibuKey Runtime 6.51 contains an unquoted service path vulnerability in the WkSvW32.exe service that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted path in 'C:\PROGRAM FILES (X86)\WIBUKEY\SERVER\WkSvW32.exe' to inject malicious executables and escalate privileges.


Published

2026-01-16T00:16:26.077

Last Modified

2026-01-30T00:49:54.523

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-428

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application wibu wibukey 6.51 Yes

References