Motorola Device Manager 2.5.4 contains an unquoted service path vulnerability in the MotoHelperService.exe service that allows local users to potentially inject malicious code. Attackers can exploit the unquoted path in the service configuration to execute arbitrary code with elevated system privileges during service startup.
Metrics
Affected Vendors & Products
References
History
Tue, 27 Jan 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 27 Jan 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Motorola Device Manager 2.5.4 contains an unquoted service path vulnerability in the MotoHelperService.exe service that allows local users to potentially inject malicious code. Attackers can exploit the unquoted path in the service configuration to execute arbitrary code with elevated system privileges during service startup. | |
| Title | Motorola Device Manager 2.5.4 - 'MotoHelperService.exe' Unquoted Service Path | |
| Weaknesses | CWE-428 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-01-27T20:26:30.583Z
Reserved: 2026-01-27T15:47:07.999Z
Link: CVE-2020-36982
Updated: 2026-01-27T20:26:20.304Z
Status : Received
Published: 2026-01-27T19:16:11.283
Modified: 2026-01-27T19:16:11.283
Link: CVE-2020-36982
No data.
OpenCVE Enrichment
No data.