Hwinfo's vulnerability footprint centers on a system-information and hardware-monitoring utility with exposure concentrated in its kernel-mode driver component for AMD64 platforms. The observed weakness classes—buffer-boundary violations and NULL-pointer dereferences—reflect the memory-safety demands of direct hardware access and kernel-level operations; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Hwinfo over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-8061HIGH HWiNFO AMD64 Kernel driver version 8.98 and lower allows an unprivileged user to send IOCTL 0x85FE2608 to the device driver with the HWiNFO32 symbolic device name, resulting in dir | May 10, 2018 | 7.1 | 22 | NO | NO |
CVE-2018-8060MEDIUM HWiNFO AMD64 Kernel driver version 8.98 and lower allows an unprivileged user to send an IOCTL to the device driver. If input and/or output buffer pointers are NULL or if these buf | May 10, 2018 | 5.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Hwinfo.
Media articles that mention a CVE ID that affects a product developed by Hwinfo — matched by CVE ID, not by vendor name.