CVE-2025-21204
Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally.
Vendor
Product
CWE
Yayın Tarihi
2025-04-08 18:15:45
Güncelleme
2025-07-09 16:41:26
Source Identifier
secure@microsoft.com
KEV Date Added
-
Kategoriler
Referanslar
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21204
https://www.vicarius.io/vsociety/posts/cve-2025-21204-privilege-elevation-vulnerability-in-microsoft-windows-update-stack-detection-script
https://www.vicarius.io/vsociety/posts/cve-2025-21204-privilege-elevation-vulnerability-in-microsoft-windows-update-stack-mitigation-script