AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2009-4606

HIGH · CVSS 7.2 EPSS 0.80%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2010-01-13 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.2. See the original NVD description below for full technical details.

CVE
CVE-2009-4606
Severity
HIGH
CVSS
7.2
EPSS
0.80%

Original NVD Description

South River Technologies WebDrive 9.02 build 2232 installs the WebDrive Service without a security descriptor, which allows local users to (1) stop the service via the stop command, (2) execute arbitrary commands as SYSTEM by using the config command to modify the binPath variable, or (3) restart the service via the start command.