A vulnerability (CWE-428) has been identified in the Uninterruptible Power Supply (UPS) management application provided by OMRON SOCIAL SOLUTIONS Co., Ltd., where the executable file paths of Windows services are not enclosed in quotation marks. If the installation folder path of this product contains spaces, there is a possibility that unauthorized files may be executed under the service privileges by using paths containing spaces.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 17 Sep 2025 03:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability (CWE-428) has been identified in the Uninterruptible Power Supply (UPS) management application provided by OMRON SOCIAL SOLUTIONS Co., Ltd., where the executable file paths of Windows services are not enclosed in quotation marks. If the installation folder path of this product contains spaces, there is a possibility that unauthorized files may be executed under the service privileges by using paths containing spaces. | |
Title | Vulnerability caused by unquoted file paths of Windows services registered by the Uninterruptible Power Supply (UPS) management application | |
Weaknesses | CWE-428 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: OMRON
Published:
Updated: 2025-09-17T03:02:20.527Z
Reserved: 2025-09-02T07:03:10.550Z
Link: CVE-2025-9818

No data.

Status : Received
Published: 2025-09-17T04:16:13.090
Modified: 2025-09-17T04:16:13.090
Link: CVE-2025-9818

No data.

No data.