Argus Surveillance DVR 4.0 contains an unquoted service path vulnerability in the DVRWatchdog service that allows local attackers to escalate privileges by exploiting the service binary path. Attackers can place a malicious executable in the Program Files directory to be executed with LocalSystem privileges when the service starts.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sun, 10 May 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Argussurveillance
Argussurveillance dvr |
|
| Vendors & Products |
Argussurveillance
Argussurveillance dvr |
Sun, 10 May 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Argus Surveillance DVR 4.0 contains an unquoted service path vulnerability in the DVRWatchdog service that allows local attackers to escalate privileges by exploiting the service binary path. Attackers can place a malicious executable in the Program Files directory to be executed with LocalSystem privileges when the service starts. | |
| Title | Argus Surveillance DVR 4.0 Unquoted Service Path Privilege Escalation | |
| Weaknesses | CWE-428 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-05-10T12:44:01.118Z
Reserved: 2026-02-01T11:24:18.718Z
Link: CVE-2021-47945
No data.
Status : Received
Published: 2026-05-10T13:16:30.897
Modified: 2026-05-10T13:16:30.897
Link: CVE-2021-47945
No data.
OpenCVE Enrichment
Updated: 2026-05-10T20:00:05Z
Weaknesses