CVE-2025-60865

Insecure Permissions vulnerability in avanquest Driver Updater v.9.1.57803.1174 allows a local attacker to escalate privileges via the Driver Updater Service windows component.
Configurations

Configuration 1 (hide)

cpe:2.3:a:avanquest:pc_helpsoft_driver_updater:9.1.57803.1174:*:*:*:*:*:*:*

History

10 Feb 2026, 20:39

Type Values Removed Values Added
References () https://github.com/parad0x1334/CVE-Disclosures/tree/50e5d2bf33b2926db2cb14d47d392b38ac619a41/Driver%20Updater%20-%20PCHelpsoft - () https://github.com/parad0x1334/CVE-Disclosures/tree/50e5d2bf33b2926db2cb14d47d392b38ac619a41/Driver%20Updater%20-%20PCHelpsoft - Exploit, Third Party Advisory
References () https://www.pchelpsoft.com/products/driver-updater/ - () https://www.pchelpsoft.com/products/driver-updater/ - Product
First Time Avanquest pc Helpsoft Driver Updater
Avanquest
CPE cpe:2.3:a:avanquest:pc_helpsoft_driver_updater:9.1.57803.1174:*:*:*:*:*:*:*

04 Feb 2026, 17:16

Type Values Removed Values Added
CWE CWE-284
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

03 Feb 2026, 18:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-03 18:16

Updated : 2026-02-10 20:39


NVD link : CVE-2025-60865

Mitre link : CVE-2025-60865

CVE.ORG link : CVE-2025-60865


JSON object : View

Products Affected

avanquest

  • pc_helpsoft_driver_updater
CWE
CWE-284

Improper Access Control