Acer Backup Manager 3.0.0.99 contains an unquoted service path vulnerability in the NTI IScheduleSvc service that allows local users to potentially execute arbitrary code. Attackers can exploit the unquoted path in C:\Program Files (x86)\NTI\Acer Backup Manager\ to inject malicious executables that would run with elevated LocalSystem privileges.
Metrics
Affected Vendors & Products
References
History
Fri, 16 Jan 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Acer Backup Manager 3.0.0.99 contains an unquoted service path vulnerability in the NTI IScheduleSvc service that allows local users to potentially execute arbitrary code. Attackers can exploit the unquoted path in C:\Program Files (x86)\NTI\Acer Backup Manager\ to inject malicious executables that would run with elevated LocalSystem privileges. | |
| Title | Acer Backup Manager Module 3.0.0.99 - 'IScheduleSvc.exe' Unquoted Service Path | |
| Weaknesses | CWE-428 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-01-16T21:30:42.285Z
Reserved: 2026-01-14T17:11:19.899Z
Link: CVE-2021-47826
No data.
Status : Received
Published: 2026-01-16T19:16:07.520
Modified: 2026-01-16T19:16:07.520
Link: CVE-2021-47826
No data.
OpenCVE Enrichment
No data.