CVE-2025-66680
High
|7.1Exploit Available
Plain English Summary
AI-powered analysis for quick understanding
This vulnerability allows an attacker to delete any files on a system running WiseCleaner Wise Force Deleter version 7.3.2 or earlier by sending a specially crafted request. The attacker needs access to the system where the software is installed to exploit this weakness.
Technical Description
An issue in the WiseDelfile64.sys component of WiseCleaner Wise Force Deleter 7.3.2 and earlier allows attackers to delete arbitrary files via a crafted request.
CVSS Vector Analysis
Attack VectorLocal
Attack ComplexityLow
Privileges RequiredLow
User InteractionNone
Confidentiality ImpactNone
Integrity ImpactHigh
Availability ImpactHigh
ScopeUnchanged
Vector String
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:HExploit Resources
Search for proof-of-concept code and exploit modules
Official References
Est. Bounty
$1,211($1K-$5K)
Vendor Response
Grade APatched in 2 days
Quick Information
Published
Mar 3, 2026
about 1 month ago
Last Modified
Mar 5, 2026
about 1 month ago
Vendor
wisecleaner
Product
wise force deleter