CVSS
No CVSS.
T
he RupsMon and USBMate services in UPSilon 2000 run with SYSTEM privileges and contain unquoted service paths. This allows a local attacker to perform path interception and escalate privileges if they have write permissions to the directories proceeding that of which the real service executables live in
References
| Link | Resource |
|---|---|
| https://www.megatec.com.tw/software-download/ |
Configurations
No configuration.
History
26 Nov 2025, 02:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-11-26 02:15
Updated : 2025-12-01 15:39
NVD link : CVE-2025-66269
Mitre link : CVE-2025-66269
CVE.ORG link : CVE-2025-66269
JSON object : View
Products Affected
No product.
CWE
CWE-428
Unquoted Search Path or Element