CVE-2026-29923
HIGH 7.8EPSS 0.1%
The pstrip64.sys driver in EnTech Taiwan PowerStrip <=3.90.736 allows local users to escalate privileges to SYSTEM via a crafted IOCTL request enabling unprivileged users to map arbitrary physical memory into their address space and modify critical kernel structures.
- CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - EPSS
- 0.14% chance of exploitation in the next 30 days, 3th percentile
- Published
- 2026-04-09
- Updated
- 2026-04-14
Proof-of-concept exploits (3)
- Smarttfoxx/CVE-2026-299234★ · 2026-04-05
- mein-0/cve-2026-299230★ · 2026-05-24
- athenasec16/CVE-2026-29923