CVE-2025-0834
- EPSS 0.02%
- Published 30.01.2025 09:15:09
- Last modified 30.01.2025 09:15:09
Privilege escalation vulnerability has been found in Wondershare Dr.Fone version 13.5.21. This vulnerability could allow an attacker to escalate privileges by replacing the binary ‘C:\ProgramData\Wondershare\wsServices\ElevationService.exe’ with a ma...
CVE-2023-29835
- EPSS 0.21%
- Published 26.04.2023 20:15:10
- Last modified 03.02.2025 18:15:30
Insecure Permission vulnerability found in Wondershare Dr.Fone v.12.9.6 allows a remote attacker to escalate privileges via the service permission function.
CVE-2023-27767
- EPSS 0.16%
- Published 04.04.2023 15:15:09
- Last modified 13.02.2025 21:15:12
An issue found in Wondershare Technology Co.,Ltd Dr.Fone v.12.4.9 allows a remote attacker to execute arbitrary commands via the drfone_setup_full3360.exe file.
CVE-2023-27010
- EPSS 0.12%
- Published 13.03.2023 19:15:22
- Last modified 03.03.2025 17:15:10
Wondershare Dr.Fone v12.9.6 was discovered to contain weak permissions for the service WsDrvInst. This vulnerability allows attackers to escalate privileges via modifying or overwriting the executable.
- EPSS 8.17%
- Published 29.04.2022 12:15:07
- Last modified 21.11.2024 06:31:15
Wondershare Dr. Fone Latest version as of 2021-12-06 is vulnerable to Incorrect Access Control. A normal user can send manually crafted packets to the ElevationService.exe and execute arbitrary code without any validation with SYSTEM privileges.
- EPSS 42.78%
- Published 29.04.2022 12:15:07
- Last modified 21.11.2024 06:31:15
Wondershare LTD Dr. Fone as of 2021-12-06 version is affected by Remote code execution. Due to software design flaws an unauthenticated user can communicate over UDP with the "InstallAssistService.exe" service(the service is running under SYSTEM priv...
CVE-2020-27992
- EPSS 0.04%
- Published 02.11.2020 21:15:30
- Last modified 21.11.2024 05:22:09
Dr.Fone 3.0.0 allows local users to gain privileges via a Trojan horse DriverInstall.exe because %PROGRAMFILES(X86)%\Wondershare\dr.fone\Library\DriverInstaller has Full Control for BUILTIN\Users.