PT-2026-27351 · Entech Taiwan · Tvicport

João Leko Monteiro

·

Published

2026-03-24

·

Updated

2026-05-05

·

CVE-2026-30769

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions EnTech Taiwan TVicPort Product version 4.0
Description An issue in the TVicPort64.sys component allows attackers to escalate privileges by sending crafted IOCTL 0x80002008 requests. This can lead to a kernel takeover via a Bring Your Own Vulnerable Driver (BYOVD) attack, where a legitimate but vulnerable driver is installed to execute malicious code in the kernel mode.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2026-30769

Affected Products

Tvicport