๐Ÿ” CVE Alert

CVE-2026-15430

UNKNOWN 0.0

CVE-2026-15430

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Improper access control in the IRP_MJ_WRITE command interface in Wellbia XIGNCODE3 xhunter2.sys, version 2026.6.1.192, allows a local, unprivileged attacker to achieve local privilege escalation to NT AUTHORITY\SYSTEM, extract credentials from PPL-protected lsass.exe, and terminate PPL-protected security processes.

Vendor wellbia
Product xigncode3
Published Aug 3, 2026
Stay Ahead of the Next One

Get instant alerts for wellbia xigncode3

Be the first to know when new unknown vulnerabilities affecting wellbia xigncode3 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Wellbia / XIGNCODE3
2026.6.1.192

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
blacksnufkin.github.io: https://blacksnufkin.github.io/posts/Hunting-the-Hunter-II/