An issue in OPSWAT AppRemover Driver (ardrv.sys) v2017.10.02.1551 and earlier in IOCTL handler 0x2420031. Any local user can open the device and send process termination requests without privilege validation.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-07-16 21:17
Updated : 2026-07-17 18:47
NVD link : CVE-2026-36425
Mitre link : CVE-2026-36425
CVE.ORG link : CVE-2026-36425
JSON object : View
Products Affected
No product.
CWE
CWE-269
Improper Privilege Management
