Description
The GameDriverX64.sys kernel-mode anti-cheat driver (v7.23.4.7 and earlier) contains an access control vulnerability in one of its IOCTL handlers. A user-mode process can open a handle to the driver device and send specially crafted IOCTL requests. These requests are executed in kernel-mode context without proper authentication or access validation, allowing the attacker to terminate arbitrary processes, including critical system and security services, without requiring administrative privileges.
CVSS Vector Breakdown
AV:LAttack VectorAC:LAttack ComplexityPR:LPrivileges RequiredUI:NUser InteractionS:UScopeC:NConfidentialityI:NIntegrityA:HAvailabilityWeaknesses
Exploitability
Exploit details including PoC links, Metasploit modules, and scanner templates are available after registration.
View exploit detailsAttack Graph
Click technique nodes for MITRE ATT&CK details · drag to pan · Ctrl/⌘ + scroll to zoom, or go fullscreen.
MITRE ATT&CK
1 techniqueReferences
- DragonForce Hides Backdoor C2 Inside Microsoft Teams TURN Relaysen-us·Daily CyberSecurity (securityonline.info)· Exploited Microsoft Teams Hackledorb
- DragonForce Hackers Abuse Microsoft Teams Relays to Hide Backdoor.Turn C2 Trafficen·The Hacker News· Exploited Backdoor.Turn DragonForce
- Ransomware gang abuses Microsoft Teams relays to hide malicious trafficen-us·BleepingComputer· Exploited Microsoft Teams DragonForce
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2025-61155 and every CVE in our database. Create a free account — no credit card required.
Create Free Account