CVE-2025-46355

HIGH

PC Time Tracer <5.2 - RCE

Title source: llm
STIX 2.1

Description

Incorrect default permissions issue in PC Time Tracer prior to 5.2. If exploited, arbitrary code may be executed with SYSTEM privilege on Windows system where the product is running by a local authenticated attacker.

Scores

CVSS v3 7.3
EPSS 0.0004
EPSS Percentile 13.1%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-276
Status published
Products (1)
Keiyo System Co., LTD/PC Time Tracer prior to 5.2
Published Jun 03, 2025
Tracked Since Feb 18, 2026