IM-Magic Partition Resizer <=7.9.0: MDA_NTDRV.sys KLR Access Bypass
CVE-2026-12784 Published on June 21, 2026

IM-Magic Partition Resizer Kernel Driver MDA_NTDRV.sys access control
A weakness has been identified in IM-Magic Partition Resizer up to 7.9.0. This affects an unknown function in the library MDA_NTDRV.sys of the component Kernel Driver. This manipulation causes improper access controls. The attack requires local access. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.

NVD

Timeline

Advisory disclosed

VulDB entry created

VulDB entry last update

Weakness Types

What is an Authorization Vulnerability?

The software does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

CVE-2026-12784 has been classified to as an Authorization vulnerability or weakness.

Incorrect Privilege Assignment

A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.


Products Associated with CVE-2026-12784

Want to know whenever a new CVE is published for Im Magic Partition Resizer? stack.watch will email you.

 

Affected Versions

IM-Magic Partition Resizer: