Wondershare PDFelement 5.2.9 Privilege Escalation via Unquoted Service Path
Vulnerability Description
Wondershare PDFelement 5.2.9 contains a privilege escalation vulnerability due to an unquoted service path in the WsAppService Windows service. Local attackers can place a malicious executable in the service path and execute code with LocalSystem privileges upon service restart or system reboot.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-37254
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Saeed Hasanzadeh (Net.Hun73r)
References
More from Wondershare
View All →Affected Vendor
Wondershare
View all reports →