CVE-2025-64701
QND Premium/Advance/Standard Ver.11.0.9i and prior contains a privilege escalation vulnerability, which may allow a user who can log in to a Windows system with the affected product to gain administrator privileges. As a result, sensitive information may be accessed or altered, and arbitrary actions may be performed.
Scoring
- Severity
- HIGH
- CVSS base score
- 8.5
- CVSS vector
- CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
- EPSS probability
- 0.12%
- CWE
- CWE-268
- Published
- 2025-12-11
- Last modified
- 2026-03-12
Affected products
- QualitySoft Corporation QND Premium/Advance/Standard
Weakness type
Related vulnerabilities
- CVE-2026-32325 — Privilege chaining issue exists in ServerView Agents for Windows V11.60.04 and earlier. If this...
- CVE-2026-3888 — Local Privilege Escalation in snapd
- CVE-2025-7973 — Rockwell Automation FactoryTalk® ViewPoint Privilege Escalation Vulnerability
- CVE-2025-36124 — IBM WebSphere Application Server Liberty bypass security
- CVE-2025-2297 — Privilege Management for Windows - Elevation of Privilege
- CVE-2025-49741 — Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
- CVE-2025-20112 — Cisco Unified Communications Products Privilege Escalation Vulnerability
- CVE-2025-32955 — Harden-Runner Evasion of 'disable-sudo' policy