When "snmpd.exe -register" is invoked on Windows platforms the ImagePath shown in the registry editor for the service is not quoted. Further info on this class of vulnerabilities can be seen here:
http://isc.sans.edu/diary.html?storyid=14464
http://cwe.mitre.org/data/definitions/428.html
http://www.commonexploits.com/?p=658
This was observed in Net-SNMP v5.7.3