SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-81579

HIGH · CVSS 8.8 EPSS 0.16% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-27 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

The WibuKey2_64.sys kernel driver in affected versions of WibuKey for Windows is vulnerable to an untrusted pointer dereference, allowing attackers to exploit a write-what-where primitive for local privilege escalation. This vulnerability can lead to arbitrary code execution, enabling attackers to run an administrator shell or gain full control over the system. Organizations using WibuKey on 64-bit Windows should prioritize patching to mitigate this high-severity risk.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-81579
Severity
HIGH
CVSS
8.8
EPSS
0.16%
Windows

Original NVD Description

In WibuKey for Windows before version 6.71, an untrusted pointer dereference in the WibuKey2_64.sys kernel driver for 64-bit Windows allows an attacker to exploit a write-what-where primitive, enabling local privilege escalation. This can be leveraged to execute arbitrary code, run an administrator shell, or gain full control over the system.