CVE-2025-57699

Severity CVSS v4.0:
HIGH
Type:
CWE-428 Unquoted Search Path or Element
Publication date:
22/08/2025
Last modified:
22/08/2025

Description

Western Digital Kitfox for Windows provided by Western Digital Corporation registers a Windows service with an unquoted file path.<br /> A user with the write permission on the root directory of the system drive may execute arbitrary code with the SYSTEM privilege.