dr.fone vulnerabilities
CVEs whose affected-version data names the dr.fone package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2021-44596Critical· 9.8PoCWondershare LTD Dr
Wondershare LTD Dr. Fone as of 2021-12-06 version is affected by Remote code execution. Due to software design flaws an unauthenticated user can communicate over UDP with the "InstallAssistService.exe" service(the service is running unde…
▾ Abyssalwondershare · dr.foneEPSS 23%via NVD
CVE-2021-44595High· 8.8PoCWondershare Dr
Wondershare Dr. Fone Latest version as of 2021-12-06 is vulnerable to Incorrect Access Control. A normal user can send manually crafted packets to the ElevationService.exe and execute arbitrary code without any validation with SYSTEM pri…
▾ Midnightwondershare · dr.foneEPSS 21%via NVD