PTPublisher 2.3.4 contains an unquoted service path vulnerability in the PTProtect service that allows local attackers to potentially execute arbitrary code with elevated privileges. Attackers can exploit the unquoted path in 'C:\Program Files (x86)\Primera Technology\PTPublisher\UsbFlashDongleService.exe' to inject malicious executables and gain system-level access.
References
| Link | Resource |
|---|---|
| https://www.exploit-db.com/exploits/50885 | Exploit VDB Entry |
| https://www.primera.com/ | Product |
| https://www.vulncheck.com/advisories/ptpublisher-unquoted-service-path | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2026-01-13 23:15
Updated : 2026-03-02 15:16
NVD link : CVE-2022-50915
Mitre link : CVE-2022-50915
CVE.ORG link : CVE-2022-50915
JSON object : View
Products Affected
primera
- ptpublisher
CWE
CWE-428
Unquoted Search Path or Element
