CVE-2025-60707
Use after free in Multimedia Class Scheduler Service (MMCSS) allows an authorized attacker to elevate privileges locally.
Vendor
Product
CWE
Yayın Tarihi
2025-11-11 18:15:38
Güncelleme
2025-12-16 18:16:13
Source Identifier
secure@microsoft.com
KEV Date Added
-
Kategoriler
Referanslar
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-60707
https://www.vicarius.io/vsociety/posts/cve-2025-60707-detection-script-eop-vulnerability-in-multimedia-class-scheduler-service-by-microsoft
https://www.vicarius.io/vsociety/posts/cve-2025-60707-mitigation-script-eop-vulnerability-in-multimedia-class-scheduler-service-by-microsoft