Unquoted Search Path or Element in Suricata - CVE-2026-57223
Published: July 22, 2026
Suricata
Detailed vulnerability description
The vulnerability allows a local user to escalate privileges.
The vulnerability exists due to an unquoted search path in the Windows service ImagePath when installing the service or updating service parameters. A local user can place an attacker-controlled executable in an earlier writable path component to escalate privileges.
Exploitation requires Suricata to be installed under a path containing spaces.