Security Advisory

CVE-2019-25285

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-02-04 23:15:53
Last updated 2026-07-28 01:46:49
Assigner VulnCheck
CVSS score 8.5
State PUBLISHED

Description

Alps Pointing-device Controller 8.1202.1711.04 contains an unquoted service path vulnerability in the ApHidMonitorService that allows local attackers to execute code with elevated privileges. Attackers can place a malicious executable in the service path and gain system-level access when the service restarts or the system reboots.