logo

GIGABYTE Control Center Vulnerability Enables Remote Code Execution

ID: 3285ed04-6531-52e2-82ff-8ecb33b6da90

STIX ID: report--3285ed04-6531-52e2-82ff-8ecb33b6da90

Feed Name: ThreatCluster

Threat Score
76/100

Date Published: 2026-04-01

Date Updated: 2026-04-02

...
...

A critical arbitrary file-write vulnerability (CVE-2026-4415, CVSS 9.2) was disclosed in GIGABYTE Control Center affecting versions 25.07.21.01 and earlier; the flaw allows unauthenticated remote attackers to write files anywhere on the OS, possibly resulting in remote code execution, privilege escalation, or denial-of-service. Users are urged to update to version 25.12.10.01 to mitigate the risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.