Medium severity6.1NVD Advisory· Published Dec 17, 2025· Updated Jun 17, 2026
CVE-2025-67794
CVE-2025-67794
Description
An issue was discovered in DriveLock 24.1 through 24.1.*, 24.2 before 24.2.8, and 25.1 before 25.1.6. Directories and files created by the agent are created with overly permissive ACLs, allowing local users without administrator rights to trigger actions or destabilize the agent.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- DriveLock/DriveLockdescription
Patches
Vulnerability mechanics
References
1- drivelock.help/sb/Content/SecurityBulletins/25-009-AgIncPermissions.htmnvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.