---
id: CVE-2021-20722
title: >-
  Untrusted search path vulnerability in the installers of ScanSnap Manager
  prior to versions V7.0L20 and the Software Download Installer prior to
  WinSSInst2JP.exe and WinSSInst2iX1500JP.exe allows an attacker to gain
  privileges and execut…
summary: >-
  Untrusted search path vulnerability in the installers of ScanSnap Manager
  prior to versions V7.0L20 and the Software Download Installer prior to
  WinSSInst2JP.exe and WinSSInst2iX1500JP.exe allows an attacker to gain
  privileges and execut…
severity: high
cvss: 7.8
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'
cwe:
  - CWE-427
vendor: fujitsu
product: scansnap_manager
affected:
  - scansnap_manager < 7.0l20
patched:
  - scansnap_manager 7.0l20
published: '2021-05-24'
updated: '2026-10-07'
sourceUpdated: '2026-10-07T21:17:02.807'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2021-20722'
references:
  - url: 'https://jvn.jp/en/jp/JVN65733194/index.html'
    label: vultures@jpcert.or.jp
  - url: 'https://scansnap.fujitsu.com/global/dl/'
    label: vultures@jpcert.or.jp
  - url: 'https://jvn.jp/en/jp/JVN65733194/index.html'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://scansnap.fujitsu.com/global/dl/'
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
  - cve.org
epss: 0.0044
epssPercentile: 0.36164
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: total
  timestamp: '2026-10-07T20:09:18.531656Z'
ingestedAt: '2026-10-07T20:46:46.997Z'
---

## Overview

Untrusted search path vulnerability in the installers of ScanSnap Manager prior to versions V7.0L20 and the Software Download Installer prior to WinSSInst2JP.exe and WinSSInst2iX1500JP.exe allows an attacker to gain privileges and execute arbitrary code with the privilege of the user invoking the installer via a Trojan horse DLL in an unspecified directory.

## Affected

- `scansnap_manager < 7.0l20`

## Remediation

Upgrade past the affected range:

- `scansnap_manager 7.0l20`
