Home
HIGH: 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C 10.0.17763.0 (custom) before 10.0.17763.7136
affected
10.0.17763.0 (custom) before 10.0.17763.7136
affected
10.0.17763.0 (custom) before 10.0.17763.7136
affected
10.0.20348.0 (custom) before 10.0.20348.3453
affected
10.0.19044.0 (custom) before 10.0.19044.5737
affected
10.0.22621.0 (custom) before 10.0.22621.5189
affected
10.0.19045.0 (custom) before 10.0.19045.5737
affected
10.0.26100.0 (custom) before 10.0.26100.3775
affected
10.0.22631.0 (custom) before 10.0.22631.5189
affected
10.0.22631.0 (custom) before 10.0.22631.5189
affected
10.0.25398.0 (custom) before 10.0.25398.1551
affected
10.0.26100.0 (custom) before 10.0.26100.3775
affected
10.0.26100.0 (custom) before 10.0.26100.3775
affected
Description
Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Problem types
CWE-20: Improper Input Validation
Product status
References
msrc.microsoft.com/update-guide/vulnerability/CVE-2025-24074 (Microsoft DWM Core Library Elevation of Privilege Vulnerability)
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.