Description
An issue in OPSWAT AppRemover Driver (ardrv.sys) v2017.10.02.1551 and earlier in IOCTL handler 0x2420031. Any local user can open the device and send process termination requests without privilege validation.
Published:
2026-07-16
Score:
n/a
EPSS:
< 1% Very Low
KEV:
No
Impact:
n/a
Action:
n/a
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Wed, 22 Jul 2026 06:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Privilege-Invalid Process Termination via OPSWAT AppRemover Driver | |
| Weaknesses | CWE-285 |
Thu, 16 Jul 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue in OPSWAT AppRemover Driver (ardrv.sys) v2017.10.02.1551 and earlier in IOCTL handler 0x2420031. Any local user can open the device and send process termination requests without privilege validation. | |
| References |
|
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-07-17T13:32:35.354Z
Reserved: 2026-04-06T00:00:00.000Z
Link: CVE-2026-36425
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-22T05:45:03Z
Weaknesses