Description
A vulnerability was determined in AOMEI Backupper up to 8.3.0. Impacted is an unknown function in the library amwrtdrv.sys of the component Kernel Driver. Executing a manipulation can lead to improper access controls. The attack needs to be launched locally. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.
Problem types
Incorrect Privilege Assignment
Product status
8.1
8.2
8.3.0
Timeline
| 2026-06-20: | Advisory disclosed |
| 2026-06-20: | VulDB entry created |
| 2026-06-20: | VulDB entry last update |
Credits
winslow1984 (VulDB User)
VulDB CNA Team
References
vuldb.com/vuln/372521 (VDB-372521 | AOMEI Backupper Kernel Driver amwrtdrv.sys access control)
vuldb.com/vuln/372521/cti (VDB-372521 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/cve/CVE-2026-12780 (CVE-2026-12780 | CVE Analysis and Report)
vuldb.com/submit/835609 (Submit #835609 | AOMEI AOMEI Backupper Kernel Driver amwrtdrv.sys 8.3.0 Local Privilege Escapation)
winslow1984.com/...er-amwrtdrvsys-local-privilege-escalation