vendor:
Wise Care 365, Wise Disk Cleaner
by:
Tulpa
7,2
CVSS
HIGH
Privilege Escalation
264
CWE
Product Name: Wise Care 365, Wise Disk Cleaner
Affected Version From: Wise Care 365 4.27, Wise Disk Cleaner 9.29
Affected Version To: Wise Care 365 4.27, Wise Disk Cleaner 9.29
Patch Exists: YES
Related CWE: N/A
CPE: a:wisecleaner:wise_care_365, cpe:/a:wisecleaner:wise_disk_cleaner
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 7 x86
2016
Wisecleaner Software Multiple Unquoted Service Path Elevation of Privilege
Two separate instances of unquoted service path privilege escalation have been discovered. The first instance is within Wise Care 365 4.27 which installs a vulnerable service entitled WiseBootAssistant. The second vulnerability exists when Wise Disk Cleaner 9.29 installs SpyHunter 4. Both of these services run with SYSTEM privileges. This could potentially allow an authorized but non-privileged local user to execute arbitrary code with elevated privileges on the system.
Mitigation:
Ensure that all services are running with the least privileges necessary and that all services have their paths quoted.