CVE-2025-11772
Severity CVSS v4.0:
Pending analysis
Type:
CWE-427
Uncontrolled Search Path Element
Publication date:
01/12/2025
Last modified:
02/12/2025
Description
A carefully crafted DLL, copied to <br />
<br />
C:\ProgramData\Synaptics<br />
<br />
folder, allows a local user to execute <br />
arbitrary code with elevated privileges during driver installation.
Impact
Base Score 3.x
6.60
Severity 3.x
MEDIUM



