JumpStart 0.6.0.0 contains an unquoted service path vulnerability in the jswpbapi service running with LocalSystem privileges. Attackers can exploit the unquoted path containing spaces to inject and execute malicious code with elevated system permissions.
Metrics
Affected Vendors & Products
References
History
Mon, 09 Feb 2026 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Inforprograma
Inforprograma jumpstart |
|
| Vendors & Products |
Inforprograma
Inforprograma jumpstart |
Fri, 06 Feb 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 06 Feb 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | JumpStart 0.6.0.0 contains an unquoted service path vulnerability in the jswpbapi service running with LocalSystem privileges. Attackers can exploit the unquoted path containing spaces to inject and execute malicious code with elevated system permissions. | |
| Title | JumpStart 0.6.0.0 - 'jswpbapi' Unquoted Service Path | |
| Weaknesses | CWE-428 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-02-06T16:41:38.774Z
Updated: 2026-02-06T19:09:41.739Z
Reserved: 2026-02-06T16:32:25.813Z
Link: CVE-2019-25305
Updated: 2026-02-06T19:09:30.318Z
Status : Awaiting Analysis
Published: 2026-02-06T17:16:12.037
Modified: 2026-02-06T21:57:22.450
Link: CVE-2019-25305
No data.