CVE-2023-1486
MEDIUM EXPLOITEDLespeed WiseCleaner Wise Force Deleter <1.5.3.54 - Improper Access ...
Title source: llmExploitation Summary
CVE-2023-1486 has been observed exploited in the wild (reported by VulnCheck KEV).
Description
A vulnerability classified as problematic was found in Lespeed WiseCleaner Wise Force Deleter 1.5.3.54. This vulnerability affects the function 0x220004 in the library WiseUnlock64.sys of the component IoControlCode Handler. The manipulation leads to improper access controls. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-223372.
References (4)
Core 4
Core References
Permissions Required, Third Party Advisory vdb-entry
technical-description
https://vuldb.com/?id.223372
Permissions Required, Third Party Advisory signature
permissions-required
https://vuldb.com/?ctiid.223372
Exploit, Third Party Advisory related
https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/CVE-2023-1486
Scores
CVSS v3
4.4
EPSS
0.0051
EPSS Percentile
39.7%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Details
VulnCheck KEV
2025-06-18
CWE
CWE-284
Status
published
Products (1)
wisecleaner/wise_force_deleter
1.5.3.54
Published
Mar 18, 2023
Tracked Since
Feb 18, 2026