CVE-2026-92254 Details
Description
Missing Authorization in the IOCTL handlers of the wsdkd.sys kernel drivers in Watchdog WatchDog Antivirus 1.8.640 (driver versions 1.3.0.0 and earlier) on Microsoft Windows allows local, low-privileged attackers to delete arbitrary files with SYSTEM privileges, bypassing NTFS access controls and potentially disabling security products or destabilizing the operating system, via crafted IOCTL requests sent to the \Device\wsdk device.
A vulnerability exists in the IOCTL handlers of the wsdkd.sys kernel driver in Watchdog WatchDog Antivirus versions through 1.8.640. This vulnerability allows local, low-privileged attackers to delete arbitrary files with SYSTEM privileges, bypassing NTFS access controls. The issue could be exploited by sending crafted IOCTL requests to the \Device\wsdk device, potentially disabling security products or destabilizing the operating system.
Users can update to Watchdog Antivirus version 1.8.804 or later, where this vulnerability has been addressed.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Sep 20, 2026CISA-ADP
Assessed Sep 21, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://watchdog.com/anti-virus-release-notes/ | 34edf4f2-2577-40ab-82ce-39f45972c129 | Release NotesVendor |
| https://watchdog.com/vulnerability-disclosure-policy/ | 34edf4f2-2577-40ab-82ce-39f45972c129 | Vendor |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-20 | Improper Input Validation | 34edf4f2-2577-40ab-82ce-39f45972c129 |
| CWE-306 | Missing Authentication for Critical Function | 34edf4f2-2577-40ab-82ce-39f45972c129 |
Affected Products
| Product | Versions |
|---|---|
| Watchdog WatchDog Antivirus | <= 1.3.0.0 |
CPE
Remediation
| |
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Sep 21, 2026 | CVE Modified | CISA-ADP |
| Sep 20, 2026 | New CVE Received | 34edf4f2-2577-40ab-82ce-39f45972c129 |
Volerion