PT-2026-40427 · Unknown · Fuji Tellus
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Fuji Electric Tellus (affected versions not specified)
Description
The installation of Fuji Tellus adds a kernel driver that grants all users read and write permissions. This improper permission configuration allows for local privilege escalation from a standard user to SYSTEM level. Additionally, the
pcid64 driver exposes dangerous methods within its Registry and File APIs, which can lead to arbitrary file deletion. The driver also contains an untrusted pointer dereference issue that may result in a Denial of Service (DoS), a condition where the system becomes unavailable or crashes.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
LPE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Fuji Tellus