CVE-2025-26125
CVSS 3.1 Score 7.3 of 10 (high)
Details
Summary
CVE-2025-26125 is a vulnerability affecting IObit Malware Fighter version 12.1.0. The IMFForceDelete driver in this software contains an exposed ioctl, which can be exploited by attackers. By manipulating this vulnerability, attackers can arbitrarily delete files, and potentially escalate their privileges. This issue poses a significant risk, as it allows unauthorized deletion of critical system files and potentially dangerous escalation of attacker's privileges. Users are encouraged to update to the latest version of IObit Malware Fighter to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.