CVE-2025-63602

HIGH

Awesome Miner <11.2.4 - Local Privilege Escalation

Title source: llm

Description

A vulnerability was discovered in Awesome Miner thru 11.2.4 that allows arbitrary read and write to kernel memory and MSRs (such as LSTAR) as an unprivileged user. This is due to the implementation of an insecure version of WinRing0 (1.2.0.5, renamed to IntelliBreeze.Maintenance.Service.sys) that lacks a properly secured DACL, allowing unprivileged users to interact with the driver and, as a result, the kernel. This can result in local privilege escalation, information disclosure, denial of service, and other unspecified impacts.

Exploits (1)

nomisec WORKING POC 3 stars
by D7EAD · poc
https://github.com/D7EAD/CVE-2025-63602

Scores

CVSS v3 7.3
EPSS 0.0007
EPSS Percentile 21.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Classification

CWE
CWE-126
Status published

Affected Products (1)

awesomeminer/awesome_miner

Timeline

Published Nov 18, 2025
Tracked Since Feb 18, 2026