在 Microsoft Windows 上的 Watchdog WatchDog Antivirus 1.8.60(驱动程序版本 1.3.0.0 及更早版本)中,wsdkd.sys 内核驱动程序的 IOCTL 处理程序存在缺失授权问题。本地低权限攻击者可通过向 \Device\wsdk 设备发送精心构造的 IOCTL 请求,利用此漏洞以 SYSTEM 权限删除任意文件,从而绕过 NTFS 访问控制,潜在地禁用安全产品或导致操作系统不稳定。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Watchdog | Anti-Virus | 1.8.640 ~ 1.8.804 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-92252 | 5.9 MEDIUM | Incorrect Default Permissions in WatchDog Anti-Virus Installation Directory |
| CVE-2026-92253 | 5.2 MEDIUM | Arbitrary File Write via Directory Junction in WatchDog Anti-Virus Quarantine Restoration |
No comments yet