Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jcf7-5pqw-fpmw

Опубликовано: 23 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.5
CVSS3: 8.4

Описание

Wondershare MirrorGo 2.0.11.346 contains a local privilege escalation vulnerability due to incorrect file permissions on executable files. Unprivileged local users can replace the ElevationService.exe with a malicious file to execute arbitrary code with LocalSystem privileges.

Wondershare MirrorGo 2.0.11.346 contains a local privilege escalation vulnerability due to incorrect file permissions on executable files. Unprivileged local users can replace the ElevationService.exe with a malicious file to execute arbitrary code with LocalSystem privileges.

EPSS

Процентиль: 3%
0.00016
Низкий

8.5 High

CVSS4

8.4 High

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 8.4
nvd
около 2 месяцев назад

Wondershare MirrorGo 2.0.11.346 contains a local privilege escalation vulnerability due to incorrect file permissions on executable files. Unprivileged local users can replace the ElevationService.exe with a malicious file to execute arbitrary code with LocalSystem privileges.

EPSS

Процентиль: 3%
0.00016
Низкий

8.5 High

CVSS4

8.4 High

CVSS3

Дефекты

CWE-732