CVE-2026-6102: MSI Center NTIOLib_X64 Origin Validation Error Local Privilege Escalation Vulnerability
MSI Center NTIOLibX64 Origin Validation Error Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of MSI Center. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
The specific flaw exists within the NTIOLibX64.sys driver. The issue results from insufficient validation of the origin of commands. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-28935.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-6102?
CVE-2026-6102 has a severity score of 7.8, classified as high.
How do I fix CVE-2026-6102?
To fix CVE-2026-6102, ensure that you update MSI Center to the latest version provided by the vendor.
Who is affected by CVE-2026-6102?
CVE-2026-6102 affects installations of MSI Center that utilize the NTIOLib_X64 library.
What type of attack does CVE-2026-6102 enable?
CVE-2026-6102 enables local privilege escalation for attackers already executing low-privileged code on the affected system.
When was CVE-2026-6102 published?
CVE-2026-6102 was published on July 15, 2026.