Wellbia XIGNCODE3 Privilege Escalation Vulnerability in xhunter1.sys Kernel Driver

Vulnerability

A privilege escalation vulnerability has been identified in Wellbia's XIGNCODE3 kernel driver, xhunter1.sys. This vulnerability allows user processes to access the IRP_MJ_REITS command interface, enabling them to request PROCESS_ALL_ACCESS. This issue has been cross-referenced with KVE 2023-5589.

Impact

Exploitation of this vulnerability allows for unauthorized privilege escalation, giving user processes elevated rights within the kernel.

Added: May 11, 2026, 6:40 PM
Updated: May 11, 2026, 6:40 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
4.6
remediation
0.0
relevance
8.0
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.