


Perceptive Security
SOC/SIEM Consultancy

Wise Care 365 5.6.7.568 contains an unquoted service path vulnerability in the WiseBootAssistant service running with LocalSystem privileges. Attackers can expl…
Published:
15 januari 2026 om 23:00:00
Alert date:
16 januari 2026 om 16:17:23
Source:
nvd.nist.gov
Operating Systems, Security Tools
CVE-2021-47804 affects Wise Care 365 version 5.6.7.568, containing an unquoted service path vulnerability in the WiseBootAssistant service. The service runs with LocalSystem privileges, allowing attackers to exploit this flaw by placing malicious executables in the service path. When the service restarts, the malicious code executes with elevated system privileges. This is a privilege escalation vulnerability that could allow local attackers to gain SYSTEM-level access on affected Windows systems running the vulnerable version of Wise Care 365.
Technical details
Mitigation steps:
Affected products:
Wise Care 365
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2021-47804
https://www.exploit-db.com/exploits/50038
https://www.vulncheck.com/advisories/wise-care-wisebootassistant-unquoted-service-path
https://www.wisecleaner.com/wise-care-365.html
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
