High severity7.3NVD Advisory· Published Nov 19, 2019· Updated Jun 17, 2026
CVE-2019-16861
CVE-2019-16861
Description
Code42 server through 7.0.2 for Windows has an Untrusted Search Path. In certain situations, a non-administrative attacker on the local server could create or modify a dynamic-link library (DLL). The Code42 service could then load it at runtime, and potentially execute arbitrary code at an elevated privilege on the local server.
Affected products
3- Code42/Code42 serverdescription
- Range: <=7.0.2
Patches
Vulnerability mechanics
References
2- code42.com/r/support/CVE-2019-16861nvdVendor Advisory
- support.code42.com/Terms_and_conditions/Code42_customer_support_resources/Code42_security_advisoriesnvdVendor Advisory
News mentions
0No linked articles in our index yet.