CVE-2026-15430

Improper access control in the IRP_MJ_WRITE command interface in Wellbia XIGNCODE3 xhunter2.sys, version 2026.6.1.192, allows a local, unprivileged attacker to achieve local privilege escalation to NT AUTHORITY\SYSTEM, extract credentials from PPL-protected lsass.exe, and terminate PPL-protected security processes.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-03 16:16

Updated : 2026-08-03 20:17


NVD link : CVE-2026-15430

Mitre link : CVE-2026-15430

CVE.ORG link : CVE-2026-15430


JSON object : View

Products Affected

No product.

CWE
CWE-269

Improper Privilege Management

CWE-284

Improper Access Control

CWE-732

Incorrect Permission Assignment for Critical Resource