CVE-2026-94425 Details
Description
A vulnerability was found in Moore Threads MTT S80 Driver Package 340.150. The affected element is the function sub_140006F0C in the library mtdispkm64.sys of the component IOCTL Handler. The manipulation results in improper privilege management. Attacking locally is a requirement. The vendor was contacted early about this disclosure but did not respond in any way.
A vulnerability exists in the Moore Threads MTT S80 Driver Package version 340.150, specifically within the IOCTL Handler component. The issue arises in the function sub_140006F0C, located in the library mtdispkm64.sys, where improper privilege management is introduced. This vulnerability requires local access to exploit.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Sep 21, 2026CISA-ADP
Assessed Sep 22, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://vuldb.com/cve/CVE-2026-94425 | [email protected] | AdvisoryPermission Required |
| https://vuldb.com/submit/894809 | [email protected] | Issue TrackingPermission Required |
| https://vuldb.com/vuln/408151 | [email protected] | AdvisoryPermission Required |
| https://vuldb.com/vuln/408151/cti | [email protected] | Permission Required |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-266 | Incorrect Privilege Assignment | [email protected] |
| CWE-269 | Improper Privilege Management | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| Moore Threads MTT S80 Driver Package | 340.150 |
CPE
Remediation
| |
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Sep 22, 2026 | CVE Modified | CISA-ADP |
| Sep 21, 2026 | New CVE Received | [email protected] |
Volerion