In WibuKey for Windows before version 6.71, an untrusted pointer dereference in the WibuKey2_64.sys kernel driver for 64-bit Windows allows an attacker to exploit a write-what-where primitive, enabling local privilege escalation. This can be leveraged to execute arbitrary code, run an administrator shell, or gain full control over the system.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 27 Aug 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In WibuKey for Windows before version 6.71, an untrusted pointer dereference in the WibuKey2_64.sys kernel driver for 64-bit Windows allows an attacker to exploit a write-what-where primitive, enabling local privilege escalation. This can be leveraged to execute arbitrary code, run an administrator shell, or gain full control over the system. | |
| Title | An untrusted Pointer Dereference can be exploited to escalate privileges by an unprivileged user on Windows | |
| First Time appeared |
Wibu-systems-ag
Wibu-systems-ag wibukey |
|
| Weaknesses | CWE-123 | |
| CPEs | cpe:2.3:a:wibu-systems-ag:wibukey:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Wibu-systems-ag
Wibu-systems-ag wibukey |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: wibu
Published:
Updated: 2026-08-27T08:49:17.321Z
Reserved: 2026-08-27T07:34:49.654Z
Link: CVE-2026-81579
No data.
Status : Received
Published: 2026-08-27T10:16:40.457
Modified: 2026-08-27T10:16:40.457
Link: CVE-2026-81579
No data.
OpenCVE Enrichment
No data.
Weaknesses