CVE-2021-44595

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/04/2022
Last modified:
07/11/2023

Description

Wondershare Dr. Fone Latest version as of 2021-12-06 is vulnerable to Incorrect Access Control. A normal user can send manually crafted packets to the ElevationService.exe and execute arbitrary code without any validation with SYSTEM privileges.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:wondershare:dr.fone:2021-12-06:*:*:*:*:*:*:*