Wondershare UBackit 2.0.5 contains an unquoted service path vulnerability that allows local users to potentially execute arbitrary code with elevated system privileges. Attackers can exploit the unquoted path in the wsbackup service to inject malicious executables that would run with LocalSystem permissions during service startup.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-01-13 23:15
Updated : 2026-01-14 16:25
NVD link : CVE-2022-50904
Mitre link : CVE-2022-50904
CVE.ORG link : CVE-2022-50904
JSON object : View
Products Affected
No product.
CWE
CWE-428
Unquoted Search Path or Element
