关键漏洞信息 漏洞ID ID: VA-26-013-01 漏洞描述 CVE编号: CVE-2025-68947 CWE编号及描述: CWE-862 - Missing Authorization 摘要: NSecsoft 'NSecKrnl' is a Windows driver that allows a local, authenticated attacker to terminate processes owned by other users, including SYSTEM and Protected Processes by issuing crafted IOCTL requests to the driver. CVSS评分 版本: CVSS:3.1 基础评分: AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H 基础评分值: 4.7 严重程度: MEDIUM 影响产品 Vendor: NSecsoft Product Name: NSecKrnl 受影响版本: < 推荐措施 措施**: Enable the Windows Vulnerable Driver Blocklist (and WDAC/HVCI where feasible). Monitor for driver and service installation activity that references non-default, user-writable paths. 参考链接 VulnReviewLink VirusTotal Link HexaStrike Link CVE Link GitHub Link