CVE-2018-20621: Microvirt Memu
High severity, CVSS 7.8. EPSS: 0.9% chance of exploitation in the next 30 days.
An issue was discovered in Microvirt MEmu 6.0.6. The MemuService.exe service binary is vulnerable to local privilege escalation through binary planting due to insecure permissions set at install time. This allows code to be run as NT AUTHORITY/SYSTEM.
Affected products
- Microvirt Memu: version 6.0.6 only
Published 2019-03-13. Last modified 2026-06-17.