Authorization Bypass Vulnerability in Watchdog Antivirus Product
CVE-2026-92254
6.9MEDIUM
What is CVE-2026-92254?
A critical vulnerability exists in the IOCTL handlers of the wsdkd.sys kernel driver used by Watchdog Antivirus versions 1.8.640 and earlier. This flaw permits local, low-privileged users to execute crafted IOCTL requests that can delete arbitrary files with SYSTEM privileges. As a result, attackers can bypass NTFS access controls, potentially disabling essential security products or destabilizing the entire operating system. Users of affected versions should take immediate precautions to mitigate risk.
Affected Version(s)
Anti-Virus Windows 1.8.640 < 1.8.804
