CVE-2021-47810

W

ibuKey Runtime 6.51 contains an unquoted service path vulnerability in the WkSvW32.exe service that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted path in 'C:\PROGRAM FILES (X86)\WIBUKEY\SERVER\WkSvW32.exe' to inject malicious executables and escalate privileges.

Configurations

Configuration 1 (hide)

cpe:2.3:a:wibu:wibukey:6.51:*:*:*:*:*:*:*

History

30 Jan 2026, 00:49

Type Values Removed Values Added
References () https://www.exploit-db.com/exploits/49999 - () https://www.exploit-db.com/exploits/49999 - Exploit
References () https://www.vulncheck.com/advisories/wibukey-runtime-wksvwexe-unquoted-service-path - () https://www.vulncheck.com/advisories/wibukey-runtime-wksvwexe-unquoted-service-path - Third Party Advisory
References () https://www.wibu.com - () https://www.wibu.com - Product
References () https://www.wibu.com/us/support/user/downloads-user-software.html - () https://www.wibu.com/us/support/user/downloads-user-software.html - Product
First Time Wibu
Wibu wibukey
CPE cpe:2.3:a:wibu:wibukey:6.51:*:*:*:*:*:*:*

16 Jan 2026, 22:16

Type Values Removed Values Added
References () https://www.exploit-db.com/exploits/49999 - () https://www.exploit-db.com/exploits/49999 -

16 Jan 2026, 00:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-16 00:16

Updated : 2026-01-30 00:49


NVD link : CVE-2021-47810

Mitre link : CVE-2021-47810

CVE.ORG link : CVE-2021-47810


JSON object : View

Products Affected
CWE
CWE-428

Unquoted Search Path or Element