Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
7.4
Tencent PC Manager on Windows lets a local user run powerful programs
CVE-2025-63946
Summary
A weakness in the Tencent PC Manager app on Windows devices allows a local user to run programs with more access than they should have. This could potentially be exploited by a malicious user, but it requires them to first manipulate the system in a specific way. To stay safe, ensure you keep your app up to date.
What to do
No fix is available yet. Check with your software vendor for updates.
Affected software
| Vendor | Product | Affected versions | Fix available |
|---|---|---|---|
| tencent | pcmanager | <= 17.10.28554.205 | – |
Original title
A privilege escalation (PE) vulnerability in the Tencent PC Manager app thru 17.10.28554.205 on Windows devices enables a local user to execute programs with elevated privileges. However, execution...
Original description
A privilege escalation (PE) vulnerability in the Tencent PC Manager app thru 17.10.28554.205 on Windows devices enables a local user to execute programs with elevated privileges. However, execution requires that the local user is able to successfully exploit a race condition.
nvd CVSS3.1
7.4
Vulnerability type
CWE-59
Link Following
- https://github.com/alexlee820/CVE-2025-63946-Tencent-PC-Manager-EoP/blob/main/RE... Exploit Third Party Advisory
- https://github.com/alexlee820/Tencent-PC-Manager-EoP Broken Link
Published: 23 Feb 2026 · Updated: 12 Mar 2026 · First seen: 6 Mar 2026