CVE-2023-31747

Wondershare Filmora 12 (Build 12.2.1.2088) was discovered to contain an unquoted service path vulnerability via the component NativePushService. This vulnerability allows attackers to launch processes with elevated privileges.
Configurations

Configuration 1 (hide)

cpe:2.3:a:wondershare:filmora:12:*:*:*:*:*:*:*

History

21 Jan 2025, 19:15

Type Values Removed Values Added
References (MISC) http://wondershare.com - Product () http://wondershare.com - Product
References (MISC) https://packetstormsecurity.com/files/172464/Filmora-12-Build-1.0.0.7-Unquoted-Service-Path.html - Exploit, Third Party Advisory, VDB Entry () https://packetstormsecurity.com/files/172464/Filmora-12-Build-1.0.0.7-Unquoted-Service-Path.html - Exploit, Third Party Advisory, VDB Entry
References (MISC) http://filmora.com - Not Applicable () http://filmora.com - Not Applicable

31 May 2023, 18:03

Type Values Removed Values Added
CPE cpe:2.3:a:wondershare:filmora:12:*:*:*:*:*:*:*
First Time Wondershare filmora
Wondershare
References (MISC) http://wondershare.com - (MISC) http://wondershare.com - Product
References (MISC) http://filmora.com - (MISC) http://filmora.com - Not Applicable
References (MISC) https://packetstormsecurity.com/files/172464/Filmora-12-Build-1.0.0.7-Unquoted-Service-Path.html - (MISC) https://packetstormsecurity.com/files/172464/Filmora-12-Build-1.0.0.7-Unquoted-Service-Path.html - Exploit, Third Party Advisory, VDB Entry
CWE CWE-428
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

23 May 2023, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-05-23 23:15

Updated : 2025-01-21 19:15


NVD link : CVE-2023-31747

Mitre link : CVE-2023-31747


JSON object : View

Products Affected

wondershare

  • filmora
CWE
CWE-428

Unquoted Search Path or Element