Vendor
high
advisory
CVE-2026-9492 - Improper Access Control in Gigabyte Control Center MBStorage Module
1 TTP 1 CVEAn Improper Access Control vulnerability (CVE-2026-9492) in the MBStorage DRAM lighting control module of Gigabyte Control Center (GCC) allows authenticated local attackers to achieve kernel-level privileges by sending specific IOCTL commands to the `MyPortIO_x64.sys` driver, enabling arbitrary physical memory read/write.
Gigabyte Control Center +1
privilege-escalation
vulnerability
windows
driver-vulnerability
local-privilege-escalation
1t
1c
high
advisory
Gigabyte Control Center Insecure Deserialization Privilege Escalation (CVE-2026-4416)
2 rules 1 TTPA local, authenticated attacker can exploit an insecure deserialization vulnerability in the Gigabyte Control Center's Performance Library component by sending a malicious serialized payload to the EasyTune Engine service, leading to privilege escalation.
Control Center
insecure-deserialization
privilege-escalation
windows
2r
1t