CVE-2023-27010

HIGH

Wondershare Dr.Fone <12.9.6 - Privilege Escalation

Title source: llm

Description

Wondershare Dr.Fone v12.9.6 was discovered to contain weak permissions for the service WsDrvInst. This vulnerability allows attackers to escalate privileges via modifying or overwriting the executable.

Exploits (1)

exploitdb WORKING POC
by Thurein Soe · textlocalwindows
https://www.exploit-db.com/exploits/51324

Scores

CVSS v3 7.8
EPSS 0.0063
EPSS Percentile 70.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-250
Status published
Products (1)
wondershare/dr.fone 12.9.6
Published Mar 13, 2023
Tracked Since Feb 18, 2026