Improper Privilege Management in Colorful iGameCenter by Colorful
CVE-2026-82628
9.3CRITICAL
What is CVE-2026-82628?
A vulnerability in Colorful iGameCenter version 2.0.0.81 has been identified in the IOCTL Dispatch function of the WinRing0x64.sys library. This flaw allows for improper privilege management when certain arguments are manipulated, specifically the PhysicalAddress, AlignNumer, or AlignSize parameters. The exploitation of this vulnerability necessitates local access, potentially allowing an attacker to escalate privileges on the affected system.
Affected Version(s)
iGameCenter 2.0.0.81
References
CVSS V4
Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Element2023H (VulDB User)
VulDB Vulnerability Moderation Team
