๐Ÿ” CVE Alert

CVE-2024-58288

UNKNOWN 0.0

Genexus Protection Server 9.7.2.10 Unquoted Service Path Privilege Escalation

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Genexus Protection Server 9.7.2.10 contains an unquoted service path vulnerability in the protsrvservice Windows service configuration. Attackers can exploit the unquoted binary path to execute arbitrary code with elevated LocalSystem privileges by placing malicious executables in specific file system locations.

CWE CWE-428
Vendor genexus
Product genexus protection server
Published Dec 11, 2025
Last Updated Jul 28, 2026
Stay Ahead of the Next One

Get instant alerts for genexus genexus protection server

Be the first to know when new unknown vulnerabilities affecting genexus genexus protection server are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Genexus / Genexus Protection Server
9.7.2.10

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
exploit-db.com: https://www.exploit-db.com/exploits/52065 genexus.com: https://www.genexus.com/es/ genexus.com: https://www.genexus.com/en/developers/downloadcenter?data=;; vulncheck.com: https://www.vulncheck.com/advisories/genexus-protection-server-unquoted-service-path-privilege-escalation

Credits

SamAlucard, Sam Alucard