MacPaw Encrypto 1.0.1 contains an unquoted service path vulnerability in its Encrypto Service configuration that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted path in C:\Program Files\Encrypto\ to inject malicious executables and escalate privileges on Windows systems.
Metrics
Affected Vendors & Products
References
History
Fri, 23 Jan 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Macpaw
Macpaw encrypto |
|
| Vendors & Products |
Macpaw
Macpaw encrypto |
Thu, 22 Jan 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 21 Jan 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | MacPaw Encrypto 1.0.1 contains an unquoted service path vulnerability in its Encrypto Service configuration that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted path in C:\Program Files\Encrypto\ to inject malicious executables and escalate privileges on Windows systems. | |
| Title | MacPaw Encrypto 1.0.1 - 'Encrypto Service' Unquoted Service Path | |
| Weaknesses | CWE-428 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-01-21T17:27:43.100Z
Updated: 2026-01-22T22:02:06.584Z
Reserved: 2026-01-18T12:35:05.170Z
Link: CVE-2021-47863
Updated: 2026-01-22T22:02:02.443Z
Status : Received
Published: 2026-01-21T18:16:17.697
Modified: 2026-01-21T18:16:17.697
Link: CVE-2021-47863
No data.