CVE-2025-60349: Pxscan Arbitrary Process Termination# CVE-2025-60349: Pxscan Arbitrary Process Termination
An issue was discovered in Prevx v3.0.5.220 allowing attackers to cause a denial of service via sending IOCTL code `0x22E044` to the `pxscan.sys` driver. Any processes listed under registry key `HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pxscan\Files` will be terminated.
Discovered by Dylan Reuter, August 2025.
**References:**
* https://nvd.nist.gov/vuln/detail/CVE-2025-60349
* https://www.cve.org/CVERecord?id=CVE-2025-60349
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view