The kernel driver, accessible to low-privileged users, exposes a function that fails to properly validate the privileges of the calling process. This allows creating files at arbitrary locations with full user control, ultimately allowing for privilege escalation to SYSTEM.
CVE ID: CVE-2025-1865
CVSS Base Severity: HIGH
CVSS Base Score: 8.5
CVSS Vector: CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Vendor: Elaborate Bytes AG
Product: Virtual CloneDrive
EPSS Score: 0.01% (probability of being exploited)
EPSS Percentile: 1.5% (scored less or equal to compared to others)
EPSS Date: 2025-05-03 (when was this score calculated)