ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-37230”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-37230
Published
2026-05-16
CVSS:
8.5
ShadowTrackr CVSS:
5.9
Summary:
Syncplify.me Server! 5.0.37 contains an unquoted service path vulnerability in the SMWebRestServicev5 service that allows local attackers to escalate privileges by exploiting the unquoted binary path. Attackers can insert a malicious executable into the service path and execute it with LocalSystem privileges when the service restarts or the system reboots.