Wondershare

Dr.Fone

7 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.02%
  • Published 30.01.2025 09:15:09
  • Last modified 30.01.2025 09:15:09

Privilege escalation vulnerability has been found in Wondershare Dr.Fone version 13.5.21. This vulnerability could allow an attacker to escalate privileges by replacing the binary ‘C:\ProgramData\Wondershare\wsServices\ElevationService.exe’ with a ma...

Exploit
  • EPSS 0.21%
  • Published 26.04.2023 20:15:10
  • Last modified 03.02.2025 18:15:30

Insecure Permission vulnerability found in Wondershare Dr.Fone v.12.9.6 allows a remote attacker to escalate privileges via the service permission function.

Exploit
  • EPSS 0.16%
  • Published 04.04.2023 15:15:09
  • Last modified 13.02.2025 21:15:12

An issue found in Wondershare Technology Co.,Ltd Dr.Fone v.12.4.9 allows a remote attacker to execute arbitrary commands via the drfone_setup_full3360.exe file.

  • EPSS 0.12%
  • Published 13.03.2023 19:15:22
  • Last modified 03.03.2025 17:15:10

Wondershare Dr.Fone v12.9.6 was discovered to contain weak permissions for the service WsDrvInst. This vulnerability allows attackers to escalate privileges via modifying or overwriting the executable.

Exploit
  • EPSS 8.17%
  • Published 29.04.2022 12:15:07
  • Last modified 21.11.2024 06:31:15

Wondershare Dr. Fone Latest version as of 2021-12-06 is vulnerable to Incorrect Access Control. A normal user can send manually crafted packets to the ElevationService.exe and execute arbitrary code without any validation with SYSTEM privileges.

Exploit
  • EPSS 42.78%
  • Published 29.04.2022 12:15:07
  • Last modified 21.11.2024 06:31:15

Wondershare LTD Dr. Fone as of 2021-12-06 version is affected by Remote code execution. Due to software design flaws an unauthenticated user can communicate over UDP with the "InstallAssistService.exe" service(the service is running under SYSTEM priv...

Exploit
  • EPSS 0.04%
  • Published 02.11.2020 21:15:30
  • Last modified 21.11.2024 05:22:09

Dr.Fone 3.0.0 allows local users to gain privileges via a Trojan horse DriverInstall.exe because %PROGRAMFILES(X86)%\Wondershare\dr.fone\Library\DriverInstaller has Full Control for BUILTIN\Users.