PT-2026-27351 · Entech Taiwan · Tvicport

·

CVE-2026-30769

·

Published

2026-03-24

·

Updated

2026-05-05

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions EnTech Taiwan TVicPort Product version 4.0
Description An issue in the TVicPort64.sys component allows attackers to escalate privileges by sending crafted IOCTL 0x80002008 requests. This can lead to a kernel takeover via a Bring Your Own Vulnerable Driver (BYOVD) attack, where a legitimate but vulnerable driver is installed to execute malicious code in the kernel mode.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-30769

Affected Products

Tvicport