CVE-2026-79298

An issue in Howyar Technologies Inc SysReturn Versions prior to 11.3.034 and fixed in v.11.3.0.34 allows a local attcker to execute arbitrary code via the BOOTia32.efi and a crafted cloak32.dat file on the ESP.
Configurations

No configuration.

History

17 Sep 2026, 16:17

Type Values Removed Values Added
CWE CWE-693
References () https://github.com/TheMalwareGuardian/UEFI-Security-Research-Howyar-SysReturn-NetCopy - () https://github.com/TheMalwareGuardian/UEFI-Security-Research-Howyar-SysReturn-NetCopy -
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.4

16 Sep 2026, 19:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-09-16 19:17

Updated : 2026-09-17 16:17


NVD link : CVE-2026-79298

Mitre link : CVE-2026-79298

CVE.ORG link : CVE-2026-79298


JSON object : View

Products Affected

No product.

CWE
CWE-693

Protection Mechanism Failure