Wondershare's vulnerability footprint concentrates across a modestly sized portfolio of consumer-facing productivity and media software—including tools such as Dr.Fone, Filmora, MobileTransfers, RepairIt, and Edraw—that target end-users performing device recovery, video editing, and data management tasks. The vendor's disclosures cluster durably around path-traversal and privilege-escalation weaknesses, with recurring patterns of untrusted search paths, unquoted search-path elements, and incorrect permission assignment on critical resources that reflect the local-execution context and elevated-privilege operations these utilities demand. A meaningful share of the vendor's vulnerabilities frequently acquire public exploit code, reflecting their appeal to straightforward local-privilege and elevation scenarios on Windows systems. Defenders should treat updates for these tools as routine maintenance priorities, particularly in environments where users retain administrative or system-level access; current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wondershare over time
Signals from CVEs in this vendor scope (30 CVEs).
30 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-44596CRITICAL Wondershare LTD Dr. Fone as of 2021-12-06 version is affected by Remote code execution. Due to software design flaws an unauthenticated user can communicate over UDP with the "Inst | Apr 29, 2022 | 9.8 | 57 | NO | YES |
CVE-2021-44595HIGH Wondershare Dr. Fone Latest version as of 2021-12-06 is vulnerable to Incorrect Access Control. A normal user can send manually crafted packets to the ElevationService.exe and exec | Apr 29, 2022 | 8.8 | 53 | NO | YES |
CVE-2023-31748HIGH Insecure permissions in MobileTrans v4.0.11 allows attackers to escalate privileges to local admin via replacing the executable file. | May 24, 2023 | 7.8 | 36 | NO | YES |
CVE-2023-31747HIGH Wondershare Filmora 12 (Build 12.2.1.2088) was discovered to contain an unquoted service path vulnerability via the component NativePushService. This vulnerability allows attackers | May 23, 2023 | 7.8 | 36 | NO | YES |
CVE-2025-10644CRITICAL Wondershare Repairit SAS Token Incorrect Permission Assignment Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on Wondersha | Sep 17, 2025 | 9.4 | 34 | NO | NO |
CVE-2023-27010HIGH Wondershare Dr.Fone v12.9.6 was discovered to contain weak permissions for the service WsDrvInst. This vulnerability allows attackers to escalate privileges via modifying or overwr | Mar 13, 2023 | 7.8 | 34 | NO | YES |
CVE-2025-10643CRITICAL Wondershare Repairit Incorrect Permission Assignment Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installati | Sep 17, 2025 | 9.1 | 33 | NO | NO |
CVE-2022-50901HIGH Wondershare Dr.Fone 11.4.9 contains an unquoted service path vulnerability in the DFWSIDService that allows local users to potentially execute arbitrary code. Attackers can exploit | Jan 13, 2026 | 7.8 | 28 | NO | NO |
CVE-2022-50900HIGH Wondershare Dr.Fone 12.0.18 contains an unquoted service path vulnerability that allows local users to execute arbitrary code with elevated system privileges. Attackers can exploit | Jan 13, 2026 | 7.8 | 28 | NO | NO |
CVE-2023-27762HIGH An issue found in Wondershare Technology Co., Ltd DemoCreator v.6.0.0 allows a remote attacker to execute arbitrary commands via the democreator_setup_full7743.exe file. | Apr 4, 2023 | 7.8 | 25 | NO | NO |
Signals from CVEs in this vendor scope (30 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wondershare.
Media articles that mention a CVE ID that affects a product developed by Wondershare — matched by CVE ID, not by vendor name.