Local Privilege Escalation Vulnerability in MSI Center by MSI
CVE-2026-6102

7.8HIGH

Key Information:

Vendor

Msi

Vendor
CVE Published:
29 July 2026

What is CVE-2026-6102?

A local privilege escalation vulnerability exists in MSI Center's NTIOLib_X64.sys driver due to inadequate validation of command origins. Attackers with access to execute low-privileged code on the target system can leverage this flaw to escalate privileges, potentially allowing them to execute arbitrary code with SYSTEM-level permissions. This vulnerability poses significant risks to affected installations, highlighting the need for users and administrators to implement security best practices.

Affected Version(s)

MSI Center 2.0.66.0

References

CVSS V3.0

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.