Local admin could to leak information from the Genetec Update Service configuration web page. An authenticated, admin privileged, Windows user could exploit this vulnerability to gain elevated privileges in the Genetec Update Service. Could be combined with CVE-2025-1789 to achieve low privilege escalation.
Metrics
Affected Vendors & Products
References
History
Wed, 25 Feb 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 25 Feb 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Genetec
Genetec update Service |
|
| Vendors & Products |
Genetec
Genetec update Service |
Tue, 24 Feb 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Local admin could to leak information from the Genetec Update Service configuration web page. An authenticated, admin privileged, Windows user could exploit this vulnerability to gain elevated privileges in the Genetec Update Service. Could be combined with CVE-2025-1789 to achieve low privilege escalation. | |
| Weaknesses | CWE-346 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Genetec
Published: 2026-02-24T18:44:36.705Z
Updated: 2026-02-24T21:17:58.063Z
Reserved: 2025-02-28T17:05:57.628Z
Link: CVE-2025-1787
Updated: 2026-02-24T21:16:36.432Z
Status : Awaiting Analysis
Published: 2026-02-24T20:27:42.413
Modified: 2026-02-24T21:52:01.367
Link: CVE-2025-1787
No data.