CVE-2023-31747
HIGH 7.8EPSS 1.1%
Wondershare Filmora 12 (Build 12.2.1.2088) was discovered to contain an unquoted service path vulnerability via the component NativePushService. This vulnerability allows attackers to launch processes with elevated privileges.
- CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - EPSS
- 1.08% chance of exploitation in the next 30 days, 63th percentile
- Published
- 2023-05-23
- Updated
- 2026-07-09
Proof-of-concept exploits (3)
- https://packetstormsecurity.com/files/172464/Filmora-12-Build-1.0.0.7-Unquoted-Service-Pa…
- msd0pe-1/CVE-2023-317470★ · 2023-05-24
- msd0pe-1/CVE-2023-31747_filmora-unquoted0★ · 2023-05-24