CNNVD-202601-1962 Information

CNNVD ID

CNNVD-202601-1962

CVE-2025-68947

  • CNNVD Published: 2026-01-13

Description (Chinese)

NSecsoft NSecKrnl是中国安在(NSecsoft)公司的一款终端防护软件的底层核心模块。 NSecsoft NSecKrnl存在安全漏洞,该漏洞源于本地攻击者可通过特制IOCTL请求终止其他用户的进程。

Description (English)

NNSecsoft NSEcKrnl is the bottom core module of a terminal protection software for NNSecsoft in China. There is a security loophole in NSecsoft NSecKrnl, which stems from the fact that local assailants can request the termination of other user processes through a custom-made IOCTL.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

安在

Published

2026-01-13

Last Modified

2026-02-24

References

https://github.com/ANYLNK/NSecSoftBYOVD https://hexastrike.com/resources/blog/threat-intelligence/valleyrat-exploiting-byovd-to-kill-endpoint-security/ https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/IT/white/2026/va-26-013-01.json https://www.cve.org/CVERecord?id=CVE-2025-68947 https://www.virustotal.com/gui/file/206f27ae820783b7755bca89f83a0fe096dbb510018dd65b63fc80bd20c03261

Share on: