Description
Wondershare LTD Dr. Fone as of 2021-12-06 version is affected by Remote code execution. Due to software design flaws an unauthenticated user can communicate over UDP with the "InstallAssistService.exe" service(the service is running under SYSTEM privileges) and manipulate it to execute malicious executable without any validation from a remote location and gain SYSTEM privileges
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T04:25:16.829Z
Reserved: 2021-12-06T00:00:00.000Z
Link: CVE-2021-44596
No data.
Status : Modified
Published: 2022-04-29T12:15:07.823
Modified: 2024-11-21T06:31:15.477
Link: CVE-2021-44596
No data.
OpenCVE Enrichment
No data.
Weaknesses