CVE-2026-30769General(entechtaiwan / tvicport)

LOWCVSS 7.8 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

An issue in the TVicPort64.sys component of EnTech Taiwan TVicPort Product v4.0, File v5.2.1.0 allows attackers to escalate privileges via sending crafted IOCTL 0x80002008 requests.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-20CWE-269

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • tvicport

Threat summary

  • Public PoC is present in monitored signal
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 2 signals
  • General: 1 classified signal
  • Disclosure: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-03-23); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Products
tvicport

1 version affected across 1 product

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-03-23: 1Mentions · 2026-03-24: 1Mentions · 2026-04-29: 1PoC Mentioned / Linked · 2026-03-24: 1Technical Details · 2026-03-23: 1Technical Details · 2026-04-29: 103-2303-2404-29
Signal classification3 categories
General
133.3%
PoC
133.3%
Disclosure
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-03-231
General1
2026-03-241
PoC1
2026-04-291
Disclosure1
Full discourse3 posts
  • MagicSword@magicswordio
    General

    🚨 New LOLDrivers Entry: TVicPort64.sys (CVE-2026-30769) A new vulnerable driver has been added to LOLDrivers with an assigned CVE. TVicPort64.sys can be abused for low-level hardware access, the kind of functionality attackers leverage in BYOVD scenarios to bypass protections. Now tracked and documented for defenders. 🧩 PR → https://github.com/magicsword-io/LOLDrivers/pull/271

    Post summary

    A new CVE-2026-30769 driver, TVicPort64.sys, is added to LOLDrivers, highlighted for its low‑level hardware access capabilities that could aid BYOVD attacks; no PoC, active exploitation, patches, or false‑positive claims are noted.

    033080505.4K
    988 followersView on X
  • UNDERCODE TESTING@UndercodeUpdate
    PoC

    🚨 #CVE-2026-30769: New BYOVD Killer Enters the Arena—TVicPort64sys Weaponized for Kernel Takeover + Video https://undercodetesting.com/cve-2026-30769-new-byovd-killer-enters-the-arena-tvicport64sys-weaponized-for-kernel-takeover-video/ Educational Purposes!

    Post summary

    The tweet announces a proof‑of‑concept video demonstrating a kernel‑takeover exploit for CVE‑2026‑30769, with no evidence of active exploitation, patch info, or detailed technical data.

    0100045
    423 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-30769 An issue in the TVicPort64.sys component of EnTech Taiwan TVicPort Product v4.0, File v5.2.1.0 allows attackers to escalate privileges via sending crafted IOCTL 0x800… https://www.cve.org/CVERecord?id=CVE-2026-30769

    Post summary

    The post announces a privilege‑escalation flaw in EnTech’s TVicPort component, giving details on the exploit vector (crafted IOCTL), but lacks PoC, patch, or active use information.

    00000151
    57.3K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appentechtaiwantvicport5.2.1.0--

Explore more