CVE-2024-39251: Thunderobot Control Center

Critical severity, CVSS 10.0. EPSS: 0.7% chance of exploitation in the next 30 days.

An issue in the component ControlCenter.sys/ControlCenter64.sys of ThundeRobot Control Center v2.0.0.10 allows attackers to access sensitive information, execute arbitrary code, or escalate privileges via sending crafted IOCTL requests.

Affected products

Published 2024-07-01. Last modified 2026-06-17.