← Back

CVE-2021-44596

nvd nist
Published: Apr 29, 2022Modified: Jul 9, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

Wondershare LTD Dr. Fone as of 2021-12-06 version is affected by Remote code execution. Due to software design flaws an unauthenticated user can communicate over UDP with the "InstallAssistService.exe" service(the service is running under SYSTEM privileges) and manipulate it to execute malicious executable without any validation from a remote location and gain SYSTEM privileges

Affected (1)

Products: Wondershare: Dr.fone
1 product
Dr.fone
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 2021-12-06

References (4)

Timeline

No history available yet.