Medium severity5.1NVD Advisory· Published Apr 23, 2026· Updated May 19, 2026
CVE-2025-10549
CVE-2025-10549
Description
EfficientLab Controlio before v1.3.95 contains a DLL hijacking vulnerability caused by weak folder permissions in the installation directory. A local attacker can place a specially crafted DLL in this directory and achieve arbitrary code execution with highest privileges, because the affected service runs as NT AUTHORITY\SYSTEM.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <1.3.95
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.