216.73.217.24

CVE-2026-3796

· Published 09/03/2026 04:15 · Modified 10/03/2026 18:48

Labels: CVE-2026-3796 2026-03-09CVE-2026-3796CWE-266NVD-CWE-Other[email protected]

Essential information

Published
09/03/2026 04:15
Modified
10/03/2026 18:48
Author
Creator
CVSS
4.8 MEDIUM (v3) 4.8 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A weakness has been identified in Qi-ANXIN QAX Virus Removal up to 2025-10-22. The affected element is the function ZwTerminateProcess in the library QKSecureIO_Imp.sys of the component Mini Filter Driver. Executing a manipulation can lead to improper access controls. The attack is restricted to local execution. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.

NVD status

Status
Analyzed — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
qianxin / qax internet control gateway cpe:2.3:a:qianxin:qax_internet_control_gateway:*:*:*:*:*:*:*:*

References