Multiple i-フィルター products contain an issue with incorrect default permissions. If this vulnerability is exploited, a local authenticated attacker may replace a service executable on the system where the product is running, potentially allowing arbitrary code execution with SYSTEM privileges.
Metrics
Affected Vendors & Products
References
History
Wed, 27 Aug 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 27 Aug 2025 05:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Multiple i-フィルター products contain an issue with incorrect default permissions. If this vulnerability is exploited, a local authenticated attacker may replace a service executable on the system where the product is running, potentially allowing arbitrary code execution with SYSTEM privileges. | |
| Weaknesses | CWE-276 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published: 2025-08-27T05:28:42.925Z
Updated: 2025-08-27T14:52:39.319Z
Reserved: 2025-08-21T04:04:10.182Z
Link: CVE-2025-57846
Updated: 2025-08-27T14:51:43.886Z
Status : Awaiting Analysis
Published: 2025-08-27T06:15:30.777
Modified: 2025-08-29T16:24:09.860
Link: CVE-2025-57846
No data.