Description
Improper link resolution before file access ('link following') in Microsoft AutoUpdate (MAU) allows an authorized attacker to elevate privileges locally.
Problem types
CWE-59: Improper Link Resolution Before File Access ('Link Following')
Product status
References
msrc.microsoft.com/update-guide/vulnerability/CVE-2025-55317 (Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability)