Portwell Engineering Toolkits Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability

2026-03-04

 

CVE ID CVE-2026-3437
Severity High
Affected Vendors Portwell
Affected Products Portwell Engineering Toolkits version 4.8.2 and prior
Vulnerability Details An Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Portwell Engineering Toolkits version 4.8.2 could allow a local authenticated attacker to read and write to arbitrary memory via the Portwell Engineering Toolkits driver. Successful exploitation of this vulnerability could result in escalation of privileges or cause a denial-of-service condition.
Solutions & Rules N/A
Credit Jason Huang from Cyber Threat & Product Defense Center of TXOne Networks Inc.