VYPR

CWE-782

Exposed IOCTL with Insufficient Access Control

VariantDraft

Description

The product implements an IOCTL with functionality that should be restricted, but it does not properly enforce access control for the IOCTL.

Hierarchy (View 1000)

Parents

Children

none

CVEs mapped to this weakness (48)

page 2 of 3
  • CVE-2021-25695HigJul 21, 2021
    risk 0.51cvss 7.8epss 0.00

    The USB vHub in the Teradici PCOIP Software Agent prior to version 21.07.0 would accept commands from any program, which may allow an attacker to elevate privileges by changing the flow of program execution within the vHub driver.

  • CVE-2021-21786HigJul 7, 2021
    risk 0.51cvss 7.8epss 0.00

    A privilege escalation vulnerability exists in the IOCTL 0x9c406144 handling of IOBit Advanced SystemCare Ultimate 14.2.0.220. A specially crafted I/O request packet (IRP) can lead to increased privileges. An attacker can send a malicious IRP to trigger this vulnerability.

  • CVE-2025-26125HigMar 17, 2025
    risk 0.47cvss 7.3epss 0.01

    An exposed ioctl in the IMFForceDelete driver of IObit Malware Fighter v12.1.0 allows attackers to arbitrarily delete files and escalate privileges.

  • CVE-2026-80117HigSep 4, 2026
    risk 0.46cvss 7.1epss 0.00

    PassMark PerformanceTest before 11.1 build 1012, BurnInTest before 11.1 build 1000, and OSForensics before 11.1 build 1016 contain a privilege escalation vulnerability in DirectIo64.sys that allows local users to issue arbitrary IN and OUT instructions to any x86 I/O port due to…

  • CVE-2026-80113HigSep 4, 2026
    risk 0.46cvss 7.1epss 0.00

    PassMark PerformanceTest before 11.1 build 1012, BurnInTest before 11.1 build 1000, and OSForensics before 11.1 build 1016 contain a privilege escalation vulnerability in DirectIo64.sys that allows local users to clear arbitrary bits at any physical memory address due to missing…

  • CVE-2026-4483HigApr 8, 2026
    risk 0.46cvss —epss 0.00

    An exposed IOCTL with an  insufficient access control vulnerability has been identified in the utility, MxGeneralIo, for Moxa’s industrial x86 computers. The affected utility, MxGeneralIo, exposes IOCTL methods that permit direct read and write access to MSR and system…

  • CVE-2025-8061HigSep 11, 2025
    risk 0.46cvss 7.0epss 0.00

    A potential insufficient access control vulnerability was reported in the Lenovo Dispatcher 3.0 and Dispatcher 3.1 drivers used by some Lenovo consumer notebooks that could allow an authenticated local user to execute code with elevated privileges. The Lenovo Dispatcher 3.2…

  • CVE-2025-15641MedJun 17, 2026
    risk 0.44cvss —epss 0.00

    Netskope was notified about a potential gap in its Netskope Client for Windows systems where a malicious insider with administrative privileges can potentially tamper with the customer IOCTL by sending crafted IOCTL requests to the driver. A successful exploit can result in the…

  • CVE-2024-0141MedMar 5, 2025
    risk 0.44cvss 6.8epss 0.01

    NVIDIA Hopper HGX for 8-GPU contains a vulnerability in the GPU vBIOS that may allow a malicious actor with tenant level GPU access to write to an unsupported registry causing a bad state. A successful exploit of this vulnerability may lead to denial of service.

  • CVE-2026-80115MedSep 4, 2026
    risk 0.40cvss 6.1epss 0.00

    PassMark PerformanceTest before 11.1 build 1012, BurnInTest before 11.1 build 1000, and OSForensics before 11.1 build 1016 contain a privilege escalation and denial-of-service vulnerability in DirectIo64.sys that allows local attackers to read arbitrary Model-Specific Registers…

  • CVE-2026-75809MedSep 8, 2026
    risk 0.38cvss —epss 0.00

    Exposed IOCTL with insufficient access control in ASUS Armoury Crate allows a local user to disclosure information and disabling device functionality by bypassing driver authentication and using IOCTLs to read from and write to PCIe configuration space.Refer to the ' Security…

  • CVE-2026-16004MedSep 8, 2026
    risk 0.38cvss —epss 0.00

    Exposed IOCTL with Insufficient Access Control in Armoury Crate driver allows a local user to read and write arbitrary PCI/PCIe configuration space via crafted IOCTL requests by bypassing the driver's verification. Refer to the ' Security Update for Armoury Crate App' section on…

  • CVE-2021-21792MedAug 5, 2021
    risk 0.36cvss 5.5epss 0.00

    An information disclosure vulnerability exists in the the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O read requests. A specially crafted I/O request packet (IRP) can lead to privileged reads in the context of a driver which can result in…

  • CVE-2021-21791MedAug 5, 2021
    risk 0.36cvss 5.5epss 0.00

    An information disclosure vulnerability exists in the the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O read requests. A specially crafted I/O request packet (IRP) can lead to privileged reads in the context of a driver which can result in…

  • CVE-2021-21790MedAug 5, 2021
    risk 0.36cvss 5.5epss 0.00

    An information disclosure vulnerability exists in the the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O read requests. A specially crafted I/O request packet (IRP) can lead to privileged reads in the context of a driver which can result in…

  • CVE-2021-21785MedAug 5, 2021
    risk 0.36cvss 5.5epss 0.00

    An information disclosure vulnerability exists in the IOCTL 0x9c40a148 handling of IOBit Advanced SystemCare Ultimate 14.2.0.220. A specially crafted I/O request packet (IRP) can lead to a disclosure of sensitive information. An attacker can send a malicious IRP to trigger this…

  • CVE-2025-27535MedFeb 10, 2026
    risk 0.34cvss 5.3epss 0.00

    Exposed ioctl with insufficient access control in the firmware for some Intel(R) Ethernet Connection E825-C. before version NVM ver. 3.84 within Ring 0: Bare Metal OS may allow a denial of service. System software adversary with a privileged user combined with a high complexity…

  • CVE-2023-44976LowAug 1, 2025
    risk 0.21cvss 3.2epss 0.00

    Hangzhou Shunwang Rentdrv2 before 2024-12-24 allows local users to terminate EDR processes and possibly have unspecified other impact via DeviceIoControl with control code 0x22E010, as exploited in the wild in October 2023.

  • CVE-2026-16003LowSep 8, 2026
    risk 0.13cvss —epss 0.00

    Exposed IOCTL with Insufficient Access Control in Armoury Crate driver allows a local user to add an arbitrary process identifier to the driver's whitelist via a crafted IOCTL request by bypassing the driver's verification.Refer to the ' Security Update for Armoury Crate…

  • CVE-2026-6737LowMay 8, 2026
    risk 0.13cvss —epss 0.00

    An Exposed IOCTL with Insufficient Access Control vulnerability in AsusPTPFilter allows a local user to bypass driver security mechanisms and obtain restricted touchpad information or render the touchpad unusable via crafted IOCTL requests.Refer to the ' Security Update for…