LOWVulnerability

CVE-2026-90503

A flaw has been found in Chengdu Qilu Technology Ludashi 6.1026.4715.714. The affected element is the function sub_11008 in the library ComputerZ_x64.sys. Executing a manipulation of the argument PhysicalAddress can lead to information disclosure. The attack needs to be launched locally. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Properties

severity
LOW
score
2.3
cve_id
CVE-2026-90503
signal_observed_at
2026-09-22T03:13:55+00:00
vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
published_at
2026-09-13T09:16:31.933
last_modified
2026-09-15T15:17:27.650

Related Entities (3)

HAS_WEAKNESS (2)

[Weakness]Exposure of Sensitive Information to an Unauthorized Actor
[Weakness]Improper Access Control

DESCRIBED_BY (1)

[Source]NVD

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-90503 — Ninja Signal Threat Intelligence | Ninja Signal