CVE Database
/

CVE-2025-59094

Back to search

CVE-2025-59094

Published: Jan 26, 2026

Modified: Jan 26, 2026

PUBLISHED

Description

A local privilege escalation vulnerability has been identified in the Kaba exos 9300 System management application (d9sysdef.exe). Within this application it is possible to specify an arbitrary executable as well as the weekday and start time, when the specified executable should be run with SYSTEM privileges.

VendorProductVersions

dormakaba

Kaba exos 9300

affected
All versions, manual mitigation needed!

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now