Wondershare Application Framework Service 2.4.3.231 contains an unquoted service path vulnerability that allows local attackers to potentially execute arbitrary code with elevated privileges. Attackers can exploit the unquoted service path by placing malicious executables in specific directory locations to hijack the service's execution context.
Metrics
Affected Vendors & Products
References
History
Mon, 09 Feb 2026 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wondershare
Wondershare application Framework Service |
|
| Vendors & Products |
Wondershare
Wondershare application Framework Service |
Fri, 06 Feb 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 06 Feb 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Wondershare Application Framework Service 2.4.3.231 contains an unquoted service path vulnerability that allows local attackers to potentially execute arbitrary code with elevated privileges. Attackers can exploit the unquoted service path by placing malicious executables in specific directory locations to hijack the service's execution context. | |
| Title | Wondershare Application Framework Service 2.4.3.231 - 'WsAppService' Unquote Service Path | |
| Weaknesses | CWE-428 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-02-06T16:41:34.027Z
Updated: 2026-02-06T19:13:07.897Z
Reserved: 2026-01-06T16:07:08.524Z
Link: CVE-2019-25266
Updated: 2026-02-06T19:12:51.500Z
Status : Awaiting Analysis
Published: 2026-02-06T17:16:10.187
Modified: 2026-02-06T21:57:22.450
Link: CVE-2019-25266
No data.