CVE-2026-8501

HIGH

PC Tools Internet Security - Improper Access Control in PCTCore64.sys Driver

Title source: llm
STIX 2.1

Description

Improper access control in the PCTCore64.sys Windows kernel driver from PC Tools Internet Security allows user-mode processes to access the PCTCoreDriver WDM device interface and invoke privileged IOCTL handlers. A local attacker with the ability to access or load the affected driver can exploit this vulnerability to perform sensitive and privileged operations on the target system.

Scores

CVSS v3 7.8
EPSS 0.0016
EPSS Percentile 5.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-782
Status published
Products (1)
Symantec/PC Tools Internet Security
Published Jun 01, 2026
Tracked Since Jun 01, 2026