CVE-2025-57846
Unknown Unknown - Not Provided
BaseFortify

Publication date: 2025-08-27

Last updated on: 2025-08-29

Assigner: JPCERT/CC

Description
Multiple i-フィルター products contain an issue with incorrect default permissions. If this vulnerability is exploited, a local authenticated attacker may replace a service executable on the system where the product is running, potentially allowing arbitrary code execution with SYSTEM privileges.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-08-27
Last Modified
2025-08-29
Generated
2026-05-07
AI Q&A
2025-08-27
EPSS Evaluated
2026-05-05
NVD
EUVD
Affected Vendors & Products
Showing 4 associated CPEs
Vendor Product Version / Range
digital_arts i-filter 6.00.55
digital_arts i-filter 6.10.55
digital_arts i-filter 6.0
digital_arts i-filter_browser_and_cloud_multiagent 4.93R11
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-276 During installation, installed file permissions are set to allow anyone to modify those files.
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability exists in multiple i-フィルター products due to incorrect default permissions. It allows a local authenticated attacker to replace a service executable on the affected system, which can lead to arbitrary code execution with SYSTEM privileges.


How can this vulnerability impact me? :

If exploited, this vulnerability can allow an attacker with local authenticated access to execute arbitrary code with SYSTEM-level privileges, potentially leading to full control over the affected system.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart