CVE-2022-50902
HIGHWondershare FamiSafe 1.0 - Code Injection
Title source: llmDescription
Wondershare FamiSafe 1.0 contains an unquoted service path vulnerability in the FSService that allows local users to potentially execute code with elevated privileges. Attackers can exploit the unquoted path in C:\Program Files (x86)\Wondershare\FamiSafe\ to inject malicious code that would run with LocalSystem permissions during service startup.
Exploits (1)
Scores
CVSS v3
8.4
EPSS
0.0003
EPSS Percentile
7.4%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-91
Status
draft
Timeline
Published
Jan 13, 2026
Tracked Since
Feb 18, 2026