Description

Various Paragon Software products contain an arbitrary kernel memory write vulnerability within biontdrv.sys that is caused by a failure to properly validate the length of user supplied data, which can allow an attacker to execute arbitrary code on the victim machine.

INFO

Published Date :

2025-03-03T16:25:25.767Z

Last Modified :

2025-09-09T13:59:49.755Z

Source :

certcc
AFFECTED PRODUCTS

The following products are affected by CVE-2025-0286 vulnerability.

Vendors Products
Paragon-software
  • Paragon Backup \& Recovery
  • Paragon Disk Wiper
  • Paragon Drive Copy
  • Paragon Hard Disk Manager
  • Paragon Migrate Os To Ssd
  • Paragon Partition Manager

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact