Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 14 Jan 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 14 Jan 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Infonetsoftware
Infonetsoftware mediconta |
|
| Vendors & Products |
Infonetsoftware
Infonetsoftware mediconta |
Tue, 13 Jan 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Mediconta 3.7.27 contains an unquoted service path vulnerability in the servermedicontservice that allows local users to potentially execute code with elevated privileges. Attackers can exploit the unquoted path in C:\Program Files (x86)\medicont3\ to inject malicious code that would execute with LocalSystem permissions during service startup. | |
| Title | Mediconta 3.7.27 - 'servermedicontservice' Unquoted Service Path | |
| Weaknesses | CWE-428 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-01-14T19:18:05.811Z
Reserved: 2026-01-10T01:51:52.983Z
Link: CVE-2023-54336
Updated: 2026-01-14T15:46:28.731Z
Status : Deferred
Published: 2026-01-13T23:16:01.230
Modified: 2026-04-15T00:35:42.020
Link: CVE-2023-54336
No data.
OpenCVE Enrichment
Updated: 2026-01-14T10:48:57Z