CVE-2025-66265 Details
Description
CMService.exe creates the C:\\usr directory and subdirectories with insecure permissions, granting write access to all authenticated users. This allows attackers to replace configuration files (such as snmp.conf) or hijack DLLs to escalate privileges.
A vulnerability exists in the MegaTec NetAgent application, specifically within the CMService.exe component, which creates the C:\usr directory and its subdirectories with insecure permissions. This misconfiguration allows write access to all authenticated users. As a result, attackers could potentially replace critical configuration files, such as snmp.conf, or hijack DLLs to escalate privileges.
Users can download the latest firmware versions addressing this vulnerability from the MegaTec Software Download Center. Specific firmware files are available for different NetAgent models.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Nov 26, 2025CISA-ADP
Assessed Nov 26, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://www.megatec.com.tw/software-download/ | Gridware | Vendor |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-269 | Improper Privilege Management | Gridware |
Affected Products
| Product | Versions |
|---|---|
| MegaTec NetAgent DY520 | All versions |
CPE
Remediation
| |
| MegaTec NetAgent DL520 | All versions |
CPE
Remediation
| |
| MegaTec NetAgent CY504 | All versions |
CPE
Remediation
| |
| MegaTec NetAgent BY506 | All versions |
CPE
Remediation
| |
| MegaTec NetAgent DY620 | All versions |
CPE
Remediation
| |
| MegaTec NetAgent DY806 | All versions |
CPE
Remediation
| |
Change History
3 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | Gridware |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Nov 26, 2025 | New CVE Received | Gridware |
Volerion