CVE-2019-25344: MobileGo 8.5.0 - Insecure File Permissions
Wondershare MobileGo 8.5.0 contains an insecure file permissions vulnerability that allows local users to modify executable files in the application directory. Attackers can replace the original MobileGo.exe with a malicious executable to create a new user account and add it to the Administrators group with full system access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-25344?
CVE-2019-25344 is classified as a medium severity vulnerability due to its potential to allow local users to execute malicious code.
How do I fix CVE-2019-25344?
To mitigate CVE-2019-25344, you should adjust file permissions in the Wondershare MobileGo application directory to restrict access.
Who is affected by CVE-2019-25344?
CVE-2019-25344 affects users of Wondershare MobileGo version 8.5.0.
What type of vulnerability is CVE-2019-25344?
CVE-2019-25344 is an insecure file permissions vulnerability that allows local user manipulation.
What can attackers do with CVE-2019-25344?
Attackers can exploit CVE-2019-25344 to replace the original MobileGo.exe with a malicious executable, potentially gaining further access.