Vulnerability Description
Gigabyte Control Center developed by GIGABYTE has an Arbitrary File Write vulnerability. When the pairing feature is enabled, unauthenticated remote attackers can write arbitrary files to any location on the underlying operating system, leading to arbitrary code execution or privilege escalation.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Gigabyte | Control Center | < 25.12.10.01 |
Related Weaknesses (CWE)
References
- https://www.twcert.org.tw/en/cp-139-10804-689cd-2.htmlThird Party Advisory
- https://www.twcert.org.tw/tw/cp-132-10803-ae014-1.htmlThird Party Advisory
FAQ
What is CVE-2026-4415?
CVE-2026-4415 is a vulnerability with a CVSS score of 8.1 (HIGH). Gigabyte Control Center developed by GIGABYTE has an Arbitrary File Write vulnerability. When the pairing feature is enabled, unauthenticated remote attackers can write arbitrary files to any location...
How severe is CVE-2026-4415?
CVE-2026-4415 has been rated HIGH with a CVSS base score of 8.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-4415?
Check the references section above for vendor advisories and patch information. Affected products include: Gigabyte Control Center.