CVE-2025-61871 - Buffalo INC. NAS Navigator2 Unquoted Service Path Privilege Escalation
CVE ID : CVE-2025-61871
Published : Oct. 10, 2025, 4:52 a.m. | 18 minutes ago
Description : NAS Navigator2 Windows version by BUFFALO INC. registers a Windows service with an unquoted file path. A user with the write permission on the root directory of the system drive may execute arbitrary code with SYSTEM privilege.
Severity: 8.4 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Oct. 10, 2025, 4:52 a.m. | 18 minutes ago
Description : NAS Navigator2 Windows version by BUFFALO INC. registers a Windows service with an unquoted file path. A user with the write permission on the root directory of the system drive may execute arbitrary code with SYSTEM privilege.
Severity: 8.4 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...