8.8
/ 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Description
An issue was discovered in DriveLock 24.1 before 24.1.6, 24.2 before 24.2.7, and 25.1 before 25.1.5. Local unprivileged users can manipulate a DriveLock process to execute arbitrary commands on Windows computers.
AI Analysis
Local privilege escalation vulnerability in DriveLock allowing unprivileged users to execute arbitrary commands
Basic Information
ID
CVE-2025-67792
Source
mitre
Published
Dec 17, 2025 at 00:00
Modified
Dec 18, 2025 at 19:20
Affected Product
Vendor
CenterTools
Product
DriveLock
Version
24.1, 24.2, 25.1
Affected Versions
n/a n/a n/a
CWE Classification
AI Assessment
AI Score
8.8 / 10
AI Severity
High
Vendor
CenterTools
Product
DriveLock
Version
24.1-24.1.5, 24.2-24.2.6, 25.1-25.1.4