Description
A vulnerability was found in AOMEI Dynamic Disk Manager up to 10.10.1. This issue affects some unknown processing in the library ddmdrv.sys of the component Kernel Driver. Performing a manipulation results in improper access controls. The attack must be initiated from a local position. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.
Problem types
Incorrect Privilege Assignment
Product status
10.10.1
Timeline
| 2026-06-20: | Advisory disclosed |
| 2026-06-20: | VulDB entry created |
| 2026-06-20: | VulDB entry last update |
Credits
winslow1984 (VulDB User)
VulDB CNA Team
References
vuldb.com/vuln/372520 (VDB-372520 | AOMEI Dynamic Disk Manager Kernel Driver ddmdrv.sys access control)
vuldb.com/vuln/372520/cti (VDB-372520 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/cve/CVE-2026-12779 (CVE-2026-12779 | CVE Analysis and Report)
vuldb.com/submit/835608 (Submit #835608 | AOMEI AOMEI Dynamic Disk Manager Kernel Driver ddmdrv.sys 10.10.1 Local Privilege Escapation)
winslow1984.com/...iver-ddmdrvsys-local-privilege-escalation