SprintWork 2.3.1 contains multiple local privilege escalation vulnerabilities through insecure file, service, and folder permissions on Windows systems. Local unprivileged users can exploit missing executable files and weak service configurations to create a new administrative user and gain complete system access.
Metrics
Affected Vendors & Products
References
History
Fri, 06 Feb 2026 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SprintWork 2.3.1 contains multiple local privilege escalation vulnerabilities through insecure file, service, and folder permissions on Windows systems. Local unprivileged users can exploit missing executable files and weak service configurations to create a new administrative user and gain complete system access. | |
| Title | SprintWork 2.3.1 - Local Privilege Escalation | |
| Weaknesses | CWE-276 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-02-06T23:14:10.433Z
Reserved: 2026-02-03T16:27:45.310Z
Link: CVE-2020-37160
No data.
Status : Received
Published: 2026-02-07T00:15:56.090
Modified: 2026-02-07T00:15:56.090
Link: CVE-2020-37160
No data.
OpenCVE Enrichment
No data.