CVE-2020-37059 – Popcorn Time 6.2 – ‘Update service’ Unquoted Service Path
CVE ID : CVE-2020-37059
Published : Jan. 30, 2026, 4:16 p.m. | 54 minutes ago
Description : Popcorn Time 6.2.1.14 contains an unquoted service path vulnerability that allows local non-privileged users to potentially execute code with elevated system privileges. Attackers can insert malicious executables in Program Files (x86) or system root directories to be executed with SYSTEM-level permissions during service startup.
Severity: 8.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more…