CVE-2025-47962
HIGHMicrosoft Windows Software Development Kit - Improper Access Control
Title source: ruleDescription
Improper access control in Windows SDK allows an authorized attacker to elevate privileges locally.
Exploits (1)
Scores
CVSS v3
7.8
EPSS
0.0058
EPSS Percentile
69.1%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-284
Status
published
Products (1)
microsoft/windows_software_development_kit
< 10.0.26100.4188
Published
Jun 10, 2025
Tracked Since
Feb 18, 2026