A security flaw has been discovered in Chengdu Qilu Technology Ludashi 6.1026.4715.714. Affected by this vulnerability is the function MessageNotifyCallback in the library ProtectFilter64.sys of the component Message Dispatch Handler. Performing a manipulation results in missing authorization. Attacking locally is a requirement. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Sun, 13 Sep 2026 10:15:00 +0000

Type Values Removed Values Added
Description A security flaw has been discovered in Chengdu Qilu Technology Ludashi 6.1026.4715.714. Affected by this vulnerability is the function MessageNotifyCallback in the library ProtectFilter64.sys of the component Message Dispatch Handler. Performing a manipulation results in missing authorization. Attacking locally is a requirement. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Title Chengdu Qilu Technology Ludashi Message Dispatch ProtectFilter64.sys MessageNotifyCallback authorization
First Time appeared Chengdu Qilu Technology
Chengdu Qilu Technology ludashi
Weaknesses CWE-862
CWE-863
CPEs cpe:2.3:a:chengdu_qilu_technology:ludashi:*:*:*:*:*:*:*:*
Vendors & Products Chengdu Qilu Technology
Chengdu Qilu Technology ludashi
References
Metrics cvssV2_0

{'score': 2.9, 'vector': 'AV:L/AC:L/Au:M/C:N/I:P/A:P/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 3.4, 'vector': 'CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:L/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 3.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:L/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 4.6, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:P'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-09-13T09:45:07.673Z

Reserved: 2026-09-12T08:52:32.719Z

Link: CVE-2026-90508

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-13T10:16:55.900

Modified: 2026-09-13T10:16:55.900

Link: CVE-2026-90508

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses