Show filters
22 Total Results
Displaying 1-10 of 22
Sort by:
Attacker Value
Unknown

CVE-2025-0834

Disclosure Date: January 30, 2025 (last updated January 30, 2025)
Privilege escalation vulnerability has been found in Wondershare Dr.Fone version 13.5.21. This vulnerability could allow an attacker to escalate privileges by replacing the binary ‘C:\ProgramData\Wondershare\wsServices\ElevationService.exe’ with a malicious binary. This binary will be executed by SYSTEM automatically.
0
Attacker Value
Unknown

CVE-2024-24122

Disclosure Date: October 02, 2024 (last updated November 14, 2024)
A remote code execution vulnerability in the project management of Wanxing Technology's Yitu project which allows an attacker to use the exp.adpx file as a zip compressed file to construct a special file name, which can be used to decompress the project file into the system startup folder, restart the system, and automatically execute the constructed attack script.
Attacker Value
Unknown

CVE-2023-31748

Disclosure Date: May 24, 2023 (last updated October 08, 2023)
Insecure permissions in MobileTrans v4.0.11 allows attackers to escalate privileges to local admin via replacing the executable file.
Attacker Value
Unknown

CVE-2023-31747

Disclosure Date: May 23, 2023 (last updated October 08, 2023)
Wondershare Filmora 12 (Build 12.2.1.2088) was discovered to contain an unquoted service path vulnerability via the component NativePushService. This vulnerability allows attackers to launch processes with elevated privileges.
Attacker Value
Unknown

CVE-2023-29835

Disclosure Date: April 26, 2023 (last updated October 08, 2023)
Insecure Permission vulnerability found in Wondershare Dr.Fone v.12.9.6 allows a remote attacker to escalate privileges via the service permission function.
Attacker Value
Unknown

CVE-2023-27771

Disclosure Date: April 04, 2023 (last updated February 24, 2025)
An issue found in Wondershare Technology Co.,Ltd Creative Centerr v.1.0.8 allows a remote attacker to execute arbitrary commands via the wondershareCC_setup_full10819.exe file.
Attacker Value
Unknown

CVE-2023-27770

Disclosure Date: April 04, 2023 (last updated February 24, 2025)
An issue found in Wondershare Technology Co.,Ltd Edraw-max v.12.0.4 allows a remote attacker to execute arbitrary commands via the edraw-max_setup_full5371.exe file.
Attacker Value
Unknown

CVE-2023-27769

Disclosure Date: April 04, 2023 (last updated February 24, 2025)
An issue found in Wondershare Technology Co.,Ltd PDF Reader v.1.0.1 allows a remote attacker to execute arbitrary commands via the pdfreader_setup_full13143.exe file.
Attacker Value
Unknown

CVE-2023-27768

Disclosure Date: April 04, 2023 (last updated February 24, 2025)
An issue found in Wondershare Technology Co.,Ltd PDFelement v9.1.1 allows a remote attacker to execute arbitrary commands via the pdfelement-pro_setup_full5239.exe file.
Attacker Value
Unknown

CVE-2023-27767

Disclosure Date: April 04, 2023 (last updated February 24, 2025)
An issue found in Wondershare Technology Co.,Ltd Dr.Fone v.12.4.9 allows a remote attacker to execute arbitrary commands via the drfone_setup_full3360.exe file.