Rapid7 flags the QoreStor logging service as vulnerable
Status | Protocol | Port | Key | Proof | Last Scan | Exceptions |
Vulnerable | - | - | qs_logsvc | The autostart qs_logsvc service, listed as Quest QoreStor Logging Service, has an unquoted path containing whitespace: C:/Program Files (x86)/Quest/NetVault Backup/bin/qs_logsvc.exe | May 28th, 2019 |
WORKAROUND:
Windows Registry Disclaimer:
Quest does not provide support for problems that arise from impropermodification of the registry. The Windows registry contains informationcritical to your computer and applications. Make sure you back up the registrybefore modifying it. For more information on the Windows Registry Editor andhow to back up and restore it, refer to Microsoft Article ID 256986“Description of the Microsoft Windows registry” at Microsoft Support.
For more information on Unquoted Service Paths, please review this article - https://www.commonexploits.com/unquoted-service-paths/