Motorola Device Manager 2.4.5 contains an unquoted service path vulnerability in the PST Service that allows local users to potentially execute arbitrary code. Attackers can exploit the unquoted path in ForwardDaemon.exe to inject malicious code that will execute with elevated system privileges during service startup.
Metrics
Affected Vendors & Products
References
History
Tue, 27 Jan 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 27 Jan 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Motorola Device Manager 2.4.5 contains an unquoted service path vulnerability in the PST Service that allows local users to potentially execute arbitrary code. Attackers can exploit the unquoted path in ForwardDaemon.exe to inject malicious code that will execute with elevated system privileges during service startup. | |
| Title | Motorola Device Manager 2.4.5 - 'ForwardDaemon.exe ' Unquoted Service Path | |
| Weaknesses | CWE-428 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-01-27T20:35:16.942Z
Reserved: 2026-01-27T15:47:07.999Z
Link: CVE-2020-36981
Updated: 2026-01-27T20:35:13.114Z
Status : Received
Published: 2026-01-27T19:16:11.117
Modified: 2026-01-27T19:16:11.117
Link: CVE-2020-36981
No data.
OpenCVE Enrichment
No data.