CVE-2024-33227: Nicomsoft WINI2C
High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.
An issue in the component ddcdrv.sys of Nicomsoft WinI2C/DDC v3.7.4.0 allows attackers to escalate privileges and execute arbitrary code via sending crafted IOCTL requests.
Affected products
- Nicomsoft WINI2C: version 3.7.4.0 only
Published 2024-05-22. Last modified 2026-06-17.