An issue in Howyar Technologies Inc SysReturn Versions prior to 11.3.034 and fixed in v.11.3.0.34 allows a local attcker to execute arbitrary code via the BOOTia32.efi and a crafted cloak32.dat file on the ESP.
References
Configurations
No configuration.
History
17 Sep 2026, 16:17
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-693 | |
| References | () https://github.com/TheMalwareGuardian/UEFI-Security-Research-Howyar-SysReturn-NetCopy - | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.4 |
16 Sep 2026, 19:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-09-16 19:17
Updated : 2026-09-17 16:17
NVD link : CVE-2026-79298
Mitre link : CVE-2026-79298
CVE.ORG link : CVE-2026-79298
JSON object : View
Products Affected
No product.
CWE
CWE-693
Protection Mechanism Failure
