CVE-2026-3609
EUVD-2026-2911011.05.2026, 18:16
Wellbia's XIGNCODE3 xhunter1.sys kernel driver, version 10.0.10011.16384 through 2023.12.7.78, privilege escalation vulnerability provides access to the IRP_MJ_WRITE command interface, which allows any user process to request a PROCESS_ALL_ACCESS. Note: KVE 2023-5589 (https://krcert.or.kr) was initially issued for version 10.0.10011.16384, but the vulnerability was not fully remediated and remains in version 2023.12.7.78.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| wellbia | xigncode3 | 10.0.10011.16384 |
𝑥
= Vulnerable software versions