Description
A vulnerability was determined in ieungSoft Ultra RAMDisk Pro 1.82. This issue affects some unknown processing in the library URDSCSI.sys of the component Kernel Driver. This manipulation causes improper privilege management. The attack needs to be launched locally. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.
Published: 2026-08-31
Score: 9.3 Critical
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability in the URDSCSI.sys kernel driver of ieungSoft Ultra RAMDisk Pro allows a local attacker to manipulate privilege handling. By exploiting improper privilege management, a user can elevate privileges beyond their intended scope. This flaw can lead to a privilege escalation that permits full system control, and a publicly disclosed exploit demonstrates its feasibility.

Affected Systems

The affected product is ieungSoft Ultra RAMDisk Pro version 1.82, specifically its Kernel Driver component URDSCSI.sys, which lies within the library used by the application.

Risk and Exploitability

The CVSS score of 9.3 highlights a high severity vulnerability with a local attack vector and no network exploitation required. While the EPSS score is not available, the public disclosure of an exploit indicates a potentially high exploitation probability. The vulnerability is not listed in the CISA KEV catalog, yet the impact remains critical for any system running the vulnerable driver.

Generated by OpenCVE AI on August 31, 2026 at 18:05 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the vendor's official patch or upgrade to a fixed version of Ultra RAMDisk Pro.
  • If an update is unavailable, disable or uninstall the Ultra RAMDisk Pro Kernel Driver.
  • Configure local group policy or Windows Defender Device Guard to block the execution of unsigned or unmanaged kernel drivers.

Generated by OpenCVE AI on August 31, 2026 at 18:05 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 31 Aug 2026 16:15:00 +0000

Type Values Removed Values Added
Description A vulnerability was determined in ieungSoft Ultra RAMDisk Pro 1.82. This issue affects some unknown processing in the library URDSCSI.sys of the component Kernel Driver. This manipulation causes improper privilege management. The attack needs to be launched locally. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.
Title ieungSoft Ultra RAMDisk Pro Kernel Driver URDSCSI.sys privileges management
First Time appeared Ieungsoft
Ieungsoft ultra Ramdisk Pro
Weaknesses CWE-266
CWE-269
CPEs cpe:2.3:a:ieungsoft:ultra_ramdisk_pro:*:*:*:*:*:*:*:*
Vendors & Products Ieungsoft
Ieungsoft ultra Ramdisk Pro
References
Metrics cvssV2_0

{'score': 6.8, 'vector': 'AV:L/AC:L/Au:S/C:C/I:C/A:C/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 8.8, 'vector': 'CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 9.3, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P'}


Subscriptions

Ieungsoft Ultra Ramdisk Pro
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-08-31T16:00:08.780Z

Reserved: 2026-08-31T04:37:00.941Z

Link: CVE-2026-82807

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-31T16:19:19.880

Modified: 2026-08-31T16:19:19.880

Link: CVE-2026-82807

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-31T18:15:04Z

Weaknesses
  • CWE-266

    Incorrect Privilege Assignment

  • CWE-269

    Improper Privilege Management