Insecure Permissions vulnerability in avanquest Driver Updater v.9.1.57803.1174 allows a local attacker to escalate privileges via the Driver Updater Service windows component.
References
| Link | Resource |
|---|---|
| https://github.com/parad0x1334/CVE-Disclosures/tree/50e5d2bf33b2926db2cb14d47d392b38ac619a41/Driver%20Updater%20-%20PCHelpsoft | Exploit Third Party Advisory |
| https://www.pchelpsoft.com/products/driver-updater/ | Product |
Configurations
History
10 Feb 2026, 20:39
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://github.com/parad0x1334/CVE-Disclosures/tree/50e5d2bf33b2926db2cb14d47d392b38ac619a41/Driver%20Updater%20-%20PCHelpsoft - Exploit, Third Party Advisory | |
| References | () https://www.pchelpsoft.com/products/driver-updater/ - Product | |
| First Time |
Avanquest pc Helpsoft Driver Updater
Avanquest |
|
| CPE | cpe:2.3:a:avanquest:pc_helpsoft_driver_updater:9.1.57803.1174:*:*:*:*:*:*:* |
04 Feb 2026, 17:16
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-284 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
03 Feb 2026, 18:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-02-03 18:16
Updated : 2026-02-10 20:39
NVD link : CVE-2025-60865
Mitre link : CVE-2025-60865
CVE.ORG link : CVE-2025-60865
JSON object : View
Products Affected
avanquest
- pc_helpsoft_driver_updater
CWE
CWE-284
Improper Access Control
