A vulnerability (CWE-428) has been identified in the Uninterruptible Power Supply (UPS) management application provided by OMRON SOCIAL SOLUTIONS Co., Ltd., where the executable file paths of Windows services are not enclosed in quotation marks. If the installation folder path of this product contains spaces, there is a possibility that unauthorized files may be executed under the service privileges by using paths containing spaces.
Metrics
Affected Vendors & Products
References
History
Wed, 17 Sep 2025 11:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Microsoft
Microsoft windows Omron Omron poweract Pro Master Agent |
|
Vendors & Products |
Microsoft
Microsoft windows Omron Omron poweract Pro Master Agent |
Wed, 17 Sep 2025 03:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability (CWE-428) has been identified in the Uninterruptible Power Supply (UPS) management application provided by OMRON SOCIAL SOLUTIONS Co., Ltd., where the executable file paths of Windows services are not enclosed in quotation marks. If the installation folder path of this product contains spaces, there is a possibility that unauthorized files may be executed under the service privileges by using paths containing spaces. | |
Title | Vulnerability caused by unquoted file paths of Windows services registered by the Uninterruptible Power Supply (UPS) management application | |
Weaknesses | CWE-428 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: OMRON
Published:
Updated: 2025-09-17T13:40:05.543Z
Reserved: 2025-09-02T07:03:10.550Z
Link: CVE-2025-9818

No data.

Status : Received
Published: 2025-09-17T04:16:13.090
Modified: 2025-09-17T04:16:13.090
Link: CVE-2025-9818

No data.