CVE-2025-0834: Wondershare Dr.fone

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Privilege escalation vulnerability has been found in Wondershare Dr.Fone version 13.5.21. This vulnerability could allow an attacker to escalate privileges by replacing the binary ‘C:\ProgramData\Wondershare\wsServices\ElevationService.exe’ with a malicious binary. This binary will be executed by SYSTEM automatically.

Affected products

Published 2025-01-30. Last modified 2026-06-17.