We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-33069

Windows App Control for Business Security Feature Bypass Vulnerability



Description

Improper verification of cryptographic signature in App Control for Business (WDAC) allows an unauthorized attacker to bypass a security feature locally.

Reserved 2025-04-15 | Published 2025-06-10 | Updated 2025-06-11 | Assigner microsoft


MEDIUM: 5.1CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N/E:U/RL:O/RC:C

Problem types

CWE-347: Improper Verification of Cryptographic Signature

Product status

10.0.26100.0 before 10.0.26100.4349
affected

10.0.26100.0 before 10.0.26100.4349
affected

10.0.26100.0 before 10.0.26100.4349
affected

References

msrc.microsoft.com/update-guide/vulnerability/CVE-2025-33069 (Windows App Control for Business Security Feature Bypass Vulnerability) vendor-advisory

cve.org (CVE-2025-33069)

nvd.nist.gov (CVE-2025-33069)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-33069

Support options

Helpdesk Chat, Email, Knowledgebase