CVE-2021-44595
HIGHWondershare Dr.Fone - Unauthenticated Privilege Escalation via ElevationService.exe
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2021-44595. PoCs published by Netanel Cohen.
AI-analyzed exploit summary This exploit leverages an incorrect access control vulnerability in Wondershare Dr.Fone's ElevationService to execute arbitrary PowerShell commands with SYSTEM privileges. It uses msgpackrpc to send a crafted payload to the service, resulting in a reverse shell.
Description
Wondershare Dr. Fone Latest version as of 2021-12-06 is vulnerable to Incorrect Access Control. A normal user can send manually crafted packets to the ElevationService.exe and execute arbitrary code without any validation with SYSTEM privileges.
Exploits (1)
This exploit leverages an incorrect access control vulnerability in Wondershare Dr.Fone's ElevationService to execute arbitrary PowerShell commands with SYSTEM privileges. It uses msgpackrpc to send a crafted payload to the service, resulting in a reverse shell.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H