CVE-2025-57846

HIGH

i-フィルター - Privilege Escalation

Title source: llm
STIX 2.1

Description

Multiple i-フィルター products contain an issue with incorrect default permissions. If this vulnerability is exploited, a local authenticated attacker may replace a service executable on the system where the product is running, potentially allowing arbitrary code execution with SYSTEM privileges.

Scores

CVSS v3 7.8
EPSS 0.0001
EPSS Percentile 1.3%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-276
Status published
Products (7)
Digital Arts Inc./i-FILTER ブラウザー&クラウド MultiAgent for Windows prior to 4.93.R11
Digital Arts Inc./i-フィルター 6.0 prior to 6.00.55
Digital Arts Inc./i-フィルター for ZAQ prior to 6.00.55 (Windows version only)
Digital Arts Inc./i-フィルター for ネットカフェ prior to 6.10.55
Digital Arts Inc./i-フィルター for マルチデバイス prior to 6.00.55 (Windows version only)
Fujitsu Limited/FENCE-Mobile RemoteManager i-FILTER Browser Service prior to 4.93R11
OPTiM Corporation/Optimal Biz Web Filtering Powered by i-FILTER (Windows version) prior to 4.93R11
Published Aug 27, 2025
Tracked Since Feb 18, 2026