Vulnerability Description
SANUPS SOFTWARE provided by SANYO DENKI CO., LTD. registers Windows services with unquoted file paths. A user with the write permission on the root directory of the system drive may execute arbitrary code with SYSTEM privilege.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://jvn.jp/en/jp/JVN90835713/
- https://products.sanyodenki.com/media/document/sanups/H0033413_jp.pdf
- https://products.sanyodenki.com/media/document/sanups/H0033449_en.pdf
FAQ
What is CVE-2026-33253?
CVE-2026-33253 is a vulnerability with a CVSS score of 6.7 (MEDIUM). SANUPS SOFTWARE provided by SANYO DENKI CO., LTD. registers Windows services with unquoted file paths. A user with the write permission on the root directory of the system drive may execute arbitrary ...
How severe is CVE-2026-33253?
CVE-2026-33253 has been rated MEDIUM with a CVSS base score of 6.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-33253?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.