CVE-2020-36979: Atheros Coex Service Application

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Atheros Coex Service Application 8.0.0.255 contains an unquoted service path vulnerability in its Windows service configuration. Attackers can exploit the unquoted path by placing malicious executables in the service path to gain elevated system privileges during service startup.

Affected products

  • Atheros Coex Service Application: version 8.0.0.255 only

Published 2026-01-27. Last modified 2026-06-17.