CVE-2020-36977: Wondershare Driver Install Service Help
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
Wondershare Driver Install Service contains an unquoted service path vulnerability in the ElevationService executable that allows local attackers to potentially inject malicious code. Attackers can exploit the unquoted path to replace the service binary with a malicious executable, enabling privilege escalation to LocalSystem account.
Affected products
- Wondershare Wondershare Driver Install Service Help: version 10.7.1.321 only
Published 2026-01-27. Last modified 2026-06-17.