Wise Care 365 4.27 and Wise Disk Cleaner 9.29 contain unquoted service path vulnerabilities in the WiseBootAssistant and SpyHunter 4 Service respectively, allowing local users to execute arbitrary code with SYSTEM privileges. Attackers can insert malicious executables in the system root path that execute during service startup or system reboot with elevated privileges.
Metrics
Affected Vendors & Products
References
History
Wed, 15 Jul 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wisecleaner
Wisecleaner wise Care 365 |
|
| CPEs | cpe:2.3:a:wisecleaner:wise_care_365:4.27:*:*:*:*:*:*:* | |
| Vendors & Products |
Wisecleaner
Wisecleaner wise Care 365 |
Mon, 22 Jun 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 21 Jun 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wise
Wise wisecleaner |
|
| Vendors & Products |
Wise
Wise wisecleaner |
Fri, 19 Jun 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Wise Care 365 4.27 and Wise Disk Cleaner 9.29 contain unquoted service path vulnerabilities in the WiseBootAssistant and SpyHunter 4 Service respectively, allowing local users to execute arbitrary code with SYSTEM privileges. Attackers can insert malicious executables in the system root path that execute during service startup or system reboot with elevated privileges. | |
| Title | Wise Care 365 4.27 and Wise Disk Cleaner 9.29 Unquoted Service Path Privilege Escalation | |
| Weaknesses | CWE-428 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-07-15T01:23:24.184Z
Reserved: 2026-06-19T13:24:52.885Z
Link: CVE-2016-20093
Updated: 2026-06-22T16:40:17.748Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-20T22:36:04Z