CVE Database
/

CVE-2025-57846

Back to search

CVE-2025-57846

Published: Aug 27, 2025

Modified: Aug 27, 2025

PUBLISHED

CVSS v3.0

7.8

HIGH

Description

Multiple i-フィルター products contain an issue with incorrect default permissions. If this vulnerability is exploited, a local authenticated attacker may replace a service executable on the system where the product is running, potentially allowing arbitrary code execution with SYSTEM privileges.

VendorProductVersions

Digital Arts Inc.

i-フィルター 6.0

affected
prior to 6.00.55

Digital Arts Inc.

i-フィルター for マルチデバイス

affected
prior to 6.00.55 (Windows version only)

Digital Arts Inc.

i-フィルター for ZAQ

affected
prior to 6.00.55 (Windows version only)

Digital Arts Inc.

i-フィルター for ネットカフェ

affected
prior to 6.10.55

Digital Arts Inc.

i-FILTER ブラウザー&クラウド MultiAgent for Windows

affected
prior to 4.93.R11

Fujitsu Limited

FENCE-Mobile RemoteManager i-FILTER Browser Service

affected
prior to 4.93R11

OPTiM Corporation

Optimal Biz Web Filtering Powered by i-FILTER (Windows version)

affected
prior to 4.93R11

Weaknesses (CWE)

CVSS v3.0 Details

CVSS v3.0 Vector

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector

Local

Attack Complexity

Low

Privileges Required

Low

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

High

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now