CVE-2025-43922: Filewave

High severity, CVSS 8.1. EPSS: 0.1% chance of exploitation in the next 30 days.

The FileWave Windows client before 16.0.0, in some non-default configurations, allows an unprivileged local user to escalate privileges to SYSTEM.

Affected products

  • Filewave Filewave: before 16.0.0 (fixed in 16.0.0)

Published 2025-04-21. Last modified 2026-06-17.