Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h9xj-4798-57hx

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Wondershare Dr. Fone Latest version as of 2021-12-06 is vulnerable to Incorrect Access Control. A normal user can send manually crafted packets to the ElevationService.exe and execute arbitrary code without any validation with SYSTEM privileges.

Wondershare Dr. Fone Latest version as of 2021-12-06 is vulnerable to Incorrect Access Control. A normal user can send manually crafted packets to the ElevationService.exe and execute arbitrary code without any validation with SYSTEM privileges.

EPSS

Процентиль: 92%
0.08168
Низкий

8.8 High

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 8.8
nvd
почти 4 года назад

Wondershare Dr. Fone Latest version as of 2021-12-06 is vulnerable to Incorrect Access Control. A normal user can send manually crafted packets to the ElevationService.exe and execute arbitrary code without any validation with SYSTEM privileges.

EPSS

Процентиль: 92%
0.08168
Низкий

8.8 High

CVSS3

Дефекты

CWE-863