Spy Emergency 25.0.650 contains an unquoted service path vulnerability in its Windows service configurations that allows local attackers to execute code with elevated privileges. Attackers can exploit the unquoted file paths in SpyEmergencyHealth.exe and SpyEmergencySrv.exe to inject malicious code during system startup or service restart.
Metrics
Affected Vendors & Products
References
History
Mon, 19 Jan 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Spy-emergency
Spy-emergency spy Emergency |
|
| Vendors & Products |
Spy-emergency
Spy-emergency spy Emergency |
Fri, 16 Jan 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 16 Jan 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Spy Emergency 25.0.650 contains an unquoted service path vulnerability in its Windows service configurations that allows local attackers to execute code with elevated privileges. Attackers can exploit the unquoted file paths in SpyEmergencyHealth.exe and SpyEmergencySrv.exe to inject malicious code during system startup or service restart. | |
| Title | Spy Emergency 25.0.650 - Unquoted Service Path | |
| Weaknesses | CWE-428 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-01-16T19:09:40.743Z
Updated: 2026-01-16T21:09:09.941Z
Reserved: 2026-01-14T17:11:19.902Z
Link: CVE-2021-47845
Updated: 2026-01-16T20:59:25.391Z
Status : Received
Published: 2026-01-16T19:16:10.347
Modified: 2026-01-16T22:16:17.903
Link: CVE-2021-47845
No data.