The product implements an IOCTL with functionality that should be restricted, but it does not properly enforce access control for the IOCTL.
In Windows environments, use proper access control for the associated device or device namespace. See References.
Our security experts can help you identify and remediate CWE-782 vulnerabilities in your codebase.
Get Security Assessment