CVE-2019-25266: Wondershare Application Framework Service 2.4.3.231 - 'WsAppService' Unquote Service Path
Wondershare Application Framework Service 2.4.3.231 contains an unquoted service path vulnerability that allows local attackers to potentially execute arbitrary code with elevated privileges. Attackers can exploit the unquoted service path by placing malicious executables in specific directory locations to hijack the service's execution context.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-25266?
CVE-2019-25266 is classified as a high severity vulnerability due to its potential for arbitrary code execution with elevated privileges.
How do I fix CVE-2019-25266?
To fix CVE-2019-25266, update the Wondershare Application Framework Service to the latest version that addresses the unquoted service path issue.
Who is affected by CVE-2019-25266?
Users of Wondershare Application Framework Service version 2.4.3.231 are affected by CVE-2019-25266.
Can CVE-2019-25266 be exploited remotely?
CVE-2019-25266 is not remotely exploitable; it requires local access to the affected system.
What type of vulnerability is CVE-2019-25266?
CVE-2019-25266 is an unquoted service path vulnerability that can lead to arbitrary code execution.