CVE-2026-12778
HIGHAOMEI Partition Assistant Kernel Driver ampa10.sys access control
Title source: cnaDescription
A vulnerability has been found in AOMEI Partition Assistant up to 10.10.1. This vulnerability affects unknown code in the library ampa10.sys of the component Kernel Driver. Such manipulation leads to improper access controls. The attack must be carried out locally. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
References (5)
Core 5
Core References
Signature, Permissions Required signature
permissions-required
VDB-372519 | CTI Indicators (IOB, IOC, TTP, IOA)
https://vuldb.com/vuln/372519/cti
Third Party Advisory third-party-advisory
CVE-2026-12778 | CVE Analysis and Report
https://vuldb.com/cve/CVE-2026-12778
Third Party Advisory third-party-advisory
Submit #835607 | AOMEI AOMEI Partition Assistant Kernel Driver ampa10.sys 10.10.1 Local Privilege Escapation
https://vuldb.com/submit/835607
Exploit exploit
https://winslow1984.com/books/cve-collection/page/aomei-partition-assistant-10101-kernel-driver-ampa10sys-local-privilege-escalation
Vdb Entry vdb-entry
VDB-372519 | AOMEI Partition Assistant Kernel Driver ampa10.sys access control
https://vuldb.com/vuln/372519
Scores
CVSS v3
7.8
EPSS
0.0016
EPSS Percentile
5.9%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
no
Technical Impact
total
Details
CWE
CWE-266
CWE-284
Status
published
Products (2)
AOMEI/Partition Assistant
10.10.0
AOMEI/Partition Assistant
10.10.1
Published
Jun 21, 2026
Tracked Since
Jun 21, 2026