VU#687587: AOMEI Backupper amwrtdrv.sys local privilege escalation vulnerability allows arbitrary writes to physical disks
2026-09-10T20:52:05Z•7859274efa25fe433daa7dda58ac1af0ac5cd7fb5e6b5c2ee305b262840c1913
CVE-2025-20701CVE-2026-12780CVE-2026-15630CVE-2026-19912CVE-2026-19913CVE-2026-80047CVE-2026-84282AOMEI BackupperBluetooth pairingCERT/CCCasdoorHugging Face TransformersKalturaSSRFSecure Boot bypassUEFIarbitrary disk writearbitrary file readauthorization bypassinsecure deserializationlocal privilege escalationmulti-tenant isolationownCloudremote coderemote code execution
What happened
CERT/CC vulnerability notes describe multiple security issues: local privilege escalation and pre-boot code execution in AOMEI Backupper’s amwrtdrv.sys driver; UEFI Shell-based Secure Boot bypass conditions; unauthenticated Bluetooth pairing in Skullcandy Dime 3 earbuds; SSRF in the ONLYOFFICE ownCloud integration; cross-tenant authorization bypass in Casdoor; unauthorized remote Python code caching in Hugging Face Transformers; and arbitrary file read/RCE vulnerabilities in legacy Kaltura HTML5 Player V2. Impacts range from device takeover and tenant compromise to firmware-level persistence,
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- certcc_vulnotes
- Record identifier
- 7859274efa25fe433daa7dda58ac1af0ac5cd7fb5e6b5c2ee305b262840c1913
- Enrichment time
- 2026-09-10T20:52:05Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.