Track vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.3
CVE-2026-94425: Moore Threads MTT S80 Driver Allows Local Privilege Escalation
CVE-2026-94425 · published 3 days ago
Summary
The MTT S80 driver version 340.150 contains a routine that can be misused to grant higher system rights to anyone with local access. This could let an attacker run code with full privileges on the affected computer. Install any released patches or disable/remove the driver until a fix is provided.
What to do
The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| moore threads | mtt s80 driver package | 340.150 |
Original advisory text
Moore Threads MTT S80 Driver Package IOCTL mtdispkm64.sys sub_140006F0C privileges management
A vulnerability was found in Moore Threads MTT S80 Driver Package 340.150. The affected element is the function sub_140006F0C in the library mtdispkm64.sys of the component IOCTL Handler. The manipulation results in improper privilege management. Attacking locally is a requirement. The vendor was contacted early about this disclosure but did not respond in any way.
Severity
9.3
Critical
CVSS 2.0: 6.8 (NVD)
CVSS 3.1: 8.8 (NVD)
CVSS 4.0: 9.3 (NVD)
Exploitation
EPSS <1%
Type
CWE-266Incorrect Privilege Assignment
CWE-269Improper Privilege Management
Timeline
Published21 Sep 2026
Updated25 Sep 2026
First seen21 Sep 2026
Track software like this
Free during beta