Wondershare Driver Install Service contains an unquoted service path vulnerability in the ElevationService executable that allows local attackers to potentially inject malicious code. Attackers can exploit the unquoted path to replace the service binary with a malicious executable, enabling privilege escalation to LocalSystem account.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-01-27 19:16
Updated : 2026-01-29 17:16
NVD link : CVE-2020-36977
Mitre link : CVE-2020-36977
CVE.ORG link : CVE-2020-36977
JSON object : View
Products Affected
No product.
CWE
CWE-428
Unquoted Search Path or Element
