CVE-2026-107782
EUVD-2026-9526008.10.2026, 21:17
System Informer before 4.0.26241.138 contains an incorrect authorization vulnerability in the phsvc helper that allows local attackers to reach privileged APIs by connecting from any Authenticode-signed process. Attackers can load code into a Microsoft-signed host like rundll32.exe, connect to SiSvcApiPort, and call PhSvcApiCreateService to execute code as SYSTEM.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.
References