VYPR
Unrated severityNVD Advisory· Published Jan 15, 2026· Updated Apr 7, 2026

TotalAV 5.15.69 - Unquoted Service Path

CVE-2021-47787

Description

TotalAV 5.15.69 contains an unquoted service path vulnerability in multiple system services running with LocalSystem privileges. Attackers can place malicious executables in specific unquoted path segments to potentially gain SYSTEM-level access by exploiting the service path configuration.

Affected products

2
  • TotalAV/TotalAVllm-create
    Range: 5.15.69
  • Totalav/TotalAVv5
    Range: 5.15.69

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.