CVE-2023-31748 – MobileTrans 4.0.11 - Weak Service Privilege Escalation
https://notcve.org/view.php?id=CVE-2023-31748
Insecure permissions in MobileTrans v4.0.11 allows attackers to escalate privileges to local admin via replacing the executable file. MobileTrans version 4.0.11 suffers from having a weak service permission vulnerability. • https://www.exploit-db.com/exploits/51479 http://mobiletrans.com https://packetstormsecurity.com/files/172466/MobileTrans-4.0.11-Weak-Service-Permissions.html • CWE-732: Incorrect Permission Assignment for Critical Resource •
CVE-2023-27763
https://notcve.org/view.php?id=CVE-2023-27763
An issue found in Wondershare Technology Co.,Ltd MobileTrans v.4.0.2 allows a remote attacker to execute arbitrary commands via the mobiletrans_setup_full5793.exe file. • https://github.com/liong007/Wondershare/issues/5 • CWE-426: Untrusted Search Path •