Improper Privilege Management in Colorful iGameCenter by Colorful
CVE-2026-82628

9.3CRITICAL

Key Information:

Vendor

Colorful

Vendor
CVE Published:
31 August 2026

What is CVE-2026-82628?

A vulnerability in Colorful iGameCenter version 2.0.0.81 has been identified in the IOCTL Dispatch function of the WinRing0x64.sys library. This flaw allows for improper privilege management when certain arguments are manipulated, specifically the PhysicalAddress, AlignNumer, or AlignSize parameters. The exploitation of this vulnerability necessitates local access, potentially allowing an attacker to escalate privileges on the affected system.

Affected Version(s)

iGameCenter 2.0.0.81

References

CVSS V4

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Element2023H (VulDB User)
VulDB Vulnerability Moderation Team
.