CVE-2021-47985: Brother SAPSprint 7.60 Unquoted Service Path Privilege Escalation

Published Jun 19, 2026
·
Updated

Brother SAPSprint 7.60 contains an unquoted service path vulnerability in the SAPSprint service binary that allows local attackers to escalate privileges. Attackers can place a malicious executable in the Program Files directory path to be executed with LocalSystem privileges when the service starts automatically.

Affected Software

1 affected component
Brother SAPSprint=7.60

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Remove

    Remove Brother SAPSprint 7.60 from your environment.

    Uninstall Brother SAPSprint 7.60 or remove the SAPSprint service if the software is not required to eliminate the vulnerable service binary.

  2. Configuration

    Update the SAPSprint service ImagePath so the full path to the executable is enclosed in double quotes (e.g., "C:\Program Files\...\sapsprint.exe") to eliminate the unquoted service path vulnerability.

    Brother SAPSprint service (SAPSprint 7.60) service ImagePath quoting = enclose the full service executable path in quotes
  3. Compensating control

    Restrict write permissions to Program Files directories and any directories in the SAPSprint service path so unprivileged users cannot place executables there; limit who can install or modify services.

  4. Operational

    Inspect the Program Files path(s) referenced by the SAPSprint service for any unauthorized or malicious executables, remove any found, and replace the service binary from a trusted source before restoring the service.

Event History

Jun 19, 2026
CVE Published
via MITRE·02:16 PM
Data Sourced
via MITRE·02:16 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:16 PM
DescriptionSeverityWeakness
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2021-47985?

CVE-2021-47985 has a high severity score of 8.5.

2

How do I fix CVE-2021-47985?

To fix CVE-2021-47985, ensure the service path for SAPSprint is correctly quoted to prevent privilege escalation.

3

What kind of vulnerability is CVE-2021-47985?

CVE-2021-47985 is an unquoted service path vulnerability that allows local privilege escalation.

4

Who is affected by CVE-2021-47985?

Individuals and organizations using Brother SAPSprint version 7.60 are affected by CVE-2021-47985.

5

Can CVE-2021-47985 be exploited remotely?

CVE-2021-47985 cannot be exploited remotely as it requires local access to the system.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203