CVE-2023-44976 is a local privilege escalation vulnerability affecting Hangzhou Shunwang Rentdrv2 versions prior to 2024-12-24. It allows a local, highly privileged user to terminate Endpoint Detection and Response (EDR) processes through a specific DeviceIoControl call, with potential for further unspecified impact. Rated with a low CVSS score of 3.2, this vulnerability requires local access and high privileges to exploit. While exploited in the wild in October 2023, there is no public exploit code, Metasploit module, or significant community discussion surrounding it.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Hangzhou Shunwang | Rentdrv2 | 1aed62a63b4802e599bbd33162319129501d603cceeb5e1eb22fd4733b3018a3, 9165d4f3036919a96b86d24b64d75d692802c7513f2b3054b20be40c212240a5CNA affecteddefault unknown |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.