Home
HIGH: 7.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H/E:U/RL:O/RC:C 10.0.14393.0 (custom) before 10.0.14393.7876
affected
10.0.14393.0 (custom) before 10.0.14393.7876
affected
10.0.17763.0 (custom) before 10.0.17763.7009
affected
10.0.17763.0 (custom) before 10.0.17763.7009
affected
10.0.20348.0 (custom) before 10.0.20348.3328
affected
10.0.25398.0 (custom) before 10.0.25398.1486
affected
10.0.26100.0 (custom) before 10.0.26100.3476
affected
10.0.26100.0 (custom) before 10.0.26100.3476
affected
Description
Improper link resolution before file access ('link following') in Microsoft Windows allows an authorized attacker to elevate privileges locally.
Problem types
CWE-59: Improper Link Resolution Before File Access ('Link Following')
Product status
References
msrc.microsoft.com/update-guide/vulnerability/CVE-2025-25008 (Windows Server Elevation of Privilege Vulnerability)