VU#687587: AOMEI Backupper amwrtdrv.sys local privilege escalation vulnerability allows arbitrary writes to physical disks

2026-09-10T20:52:05Z7859274efa25fe433daa7dda58ac1af0ac5cd7fb5e6b5c2ee305b262840c1913
CVE-2025-20701CVE-2026-12780CVE-2026-15630CVE-2026-19912CVE-2026-19913CVE-2026-80047CVE-2026-84282AOMEI BackupperBluetooth pairingCERT/CCCasdoorHugging Face TransformersKalturaSSRFSecure Boot bypassUEFIarbitrary disk writearbitrary file readauthorization bypassinsecure deserializationlocal privilege escalationmulti-tenant isolationownCloudremote coderemote code execution

What happened

CERT/CC vulnerability notes describe multiple security issues: local privilege escalation and pre-boot code execution in AOMEI Backupper’s amwrtdrv.sys driver; UEFI Shell-based Secure Boot bypass conditions; unauthenticated Bluetooth pairing in Skullcandy Dime 3 earbuds; SSRF in the ONLYOFFICE ownCloud integration; cross-tenant authorization bypass in Casdoor; unauthorized remote Python code caching in Hugging Face Transformers; and arbitrary file read/RCE vulnerabilities in legacy Kaltura HTML5 Player V2. Impacts range from device takeover and tenant compromise to firmware-level persistence,

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
certcc_vulnotes
Record identifier
7859274efa25fe433daa7dda58ac1af0ac5cd7fb5e6b5c2ee305b262840c1913
Enrichment time
2026-09-10T20:52:05Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.