Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3541 articles · 197888 vulns · 37/41 feeds (7d)
← Back to list
—
CVE-2025-48505PATCHED
amd · vitis unified installer for fpgas & adaptive socs in windows

CVE-2025-48505: Weak permissions in the Vitis™ Unified installation path on local Windows machines could allow a low-privileged user to

Description

Weak permissions in the Vitis™ Unified installation path on local Windows machines could allow a low-privileged user to achieve privileged escalation, potentially resulting in arbitrary code execution.

Affected Products

VendorProductVersions
amdvitis unified installer for fpgas & adaptive socs in windows—

References

  • https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-8015.html

Related News (1 articles)

Tier C
VulDB15d ago
CVE-2025-48505 | AMD Vitis Unified up to 2026.0 permission
→ No new info (linked only)
CISA KEV❌ No
Actively exploited❌ No
Patch available
2026.1
PublishedAug 11, 2026
Trending Score4
Source articles1
Independent1
Info Completeness0/14
Missing: cve_id, title, description, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-53313
drm/amd/display: Avoid NULL dereference in dc_dmub_srv error paths
Trending: 28
NONECVE-2025-54512
CVE-2025-54512: A DLL hijacking vulnerability within the AMD Ryzen Master installation could allow a local user-privileged attacker to e
Trending: 7
NONECVE-2026-0465
CVE-2026-0465: A Use‑After‑Free (UAF) vulnerability in the AMD Ryzen™ Master Utility Driver could allow a local attacker to access kern
Trending: 6
NONECVE-2026-43606
CVE-2026-43606: Observable Timing Discrepancy in the AMD Vitis Libraries ECDSA secp256k1 component could allow attackers with local acce
Trending: 4
NONECVE-2025-8087
CVE-2025-8087: A DLL hijacking vulnerability in AMD Power Design Manager could allow a malicious local attacker to escalate privileges
Trending: 4

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Aug 11, 2026
Discovered by ZDM
Aug 11, 2026
Patch Available
Aug 12, 2026