Official Product Homepageproduct
http://www.wisecleaner.com/ CVE-2016-20093
HIGH
Wise Care 365 4.27 and Wise Disk Cleaner 9.29 Unquoted Service Path Privilege Escalation
Record summary
CVE-2016-20093 has a selected CVSS score of 8.5 (high); EIP currently links 1 catalogued exploit.
Description
Wise Care 365 4.27 and Wise Disk Cleaner 9.29 contain unquoted service path vulnerabilities in the WiseBootAssistant and SpyHunter 4 Service respectively, allowing local users to execute arbitrary code with SYSTEM privileges. Attackers can insert malicious executables in the system root path that execute during service startup or system reboot with elevated privileges.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
CISA SSVC decision
ExploitationPoC
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Jun 22, 2026 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
Wise Care 365Browse Wisecleaner / Wise Care 365 | CVE List | 4.27 | affected |
Wise Disk CleanerBrowse Wisecleaner / Wise Disk Cleaner | CVE List | 9.29 | affected |
Proofs of concept
1Catalogued exploits
ExploitDBWise Care 365 4.27 / Wise Disk Cleaner 9.29 - Unquoted Service Path Privilege EscalationExploitDB exploitby TulpaNot analyzed1 file
References
5Product Referenceproduct
http://www.wisecleaner.com/wise-disk-cleaner.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2016-20093 ExploitDB-40417exploit
https://www.exploit-db.com/exploits/40417 VulnCheck Advisory: Wise Care 365 4.27 and Wise Disk Cleaner 9.29 Unquoted Service Path Privilege EscalationThird-party advisory
https://www.vulncheck.com/advisories/wise-care-365-and-wise-disk-cleaner-unquoted-service-path-privilege-escalation