PT-2026-57581 · Tencent · Tencent Pc Manager
CVSS v3.1
7.0
High
| Vector | AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Tencent PC Manager version 18.1.30242.301
Description
A flaw exists in the QMUDisk Driver component within the
qmudisk64.sys library. This issue involves uncontrolled search path processing, which occurs when an application does not properly validate the path used to locate a file or directory. A local attacker can exploit this behavior, although the attack is characterized by high complexity and difficult exploitability.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Untrusted Search Path
Uncontrolled Search Path Element
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Tencent Pc Manager