CVE-2025-66264 — The CMService.exe service runs with SYSTEM privileges and contains an unquoted service path. This allows a local attacker with write privileges to the filesystem to insert a malicious executable in th — CVE Database · The Intelligence Room