Wondershare Dr.Fone v12.9.6 was discovered to contain weak permissions for the service WsDrvInst. This vulnerability allows attackers to escalate privileges via modifying or overwriting the executable.
References
Link | Resource |
---|---|
https://cwe.mitre.org/data/definitions/250.html | Technical Description |
https://packetstormsecurity.com/files/171301/Wondershare-Dr-Fone-12.9.6-Weak-Permissions-Privilege-Escalation.html | Third Party Advisory VDB Entry |
https://cwe.mitre.org/data/definitions/250.html | Technical Description |
https://packetstormsecurity.com/files/171301/Wondershare-Dr-Fone-12.9.6-Weak-Permissions-Privilege-Escalation.html | Third Party Advisory VDB Entry |
Configurations
History
21 Nov 2024, 07:52
Type | Values Removed | Values Added |
---|---|---|
References | () https://cwe.mitre.org/data/definitions/250.html - Technical Description | |
References | () https://packetstormsecurity.com/files/171301/Wondershare-Dr-Fone-12.9.6-Weak-Permissions-Privilege-Escalation.html - Third Party Advisory, VDB Entry |
15 May 2023, 19:25
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:wondershare:dr.fone:12.9.6:*:*:*:*:windows:*:* |
22 Mar 2023, 18:18
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://cwe.mitre.org/data/definitions/250.html - Technical Description | |
References | (MISC) https://packetstormsecurity.com/files/171301/Wondershare-Dr-Fone-12.9.6-Weak-Permissions-Privilege-Escalation.html - Third Party Advisory, VDB Entry | |
CWE | NVD-CWE-Other | |
CPE | cpe:2.3:a:wondershare:dr.phone:12.9.6:*:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
13 Mar 2023, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-03-13 19:15
Updated : 2024-11-21 07:52
NVD link : CVE-2023-27010
Mitre link : CVE-2023-27010
CVE.ORG link : CVE-2023-27010
JSON object : View
Products Affected
wondershare
- dr.fone
CWE