Medium severity4.5NVD Advisory· Published Feb 3, 2021· Updated Jun 17, 2026
CVE-2020-35152
CVE-2020-35152
Description
Cloudflare WARP for Windows allows privilege escalation due to an unquoted service path. A malicious user or process running with non-administrative privileges can become an administrator by abusing the unquoted service path issue. Since version 1.2.2695.1, the vulnerability was fixed by adding quotes around the service's binary path. This issue affects Cloudflare WARP for Windows, versions prior to 1.2.2695.1.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<1.2.2695.1+ 1 more
- (no CPE)range: <1.2.2695.1
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
1- github.com/cloudflare/advisories/security/advisories/GHSA-qc57-v5q8-f22hnvdThird Party Advisory
News mentions
0No linked articles in our index yet.