CVE-2025-62215
HIGH KEVMicrosoft Windows 10 1809 < 10.0.17763.8027 - Race Condition
Title source: ruleDescription
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Kernel allows an authorized attacker to elevate privileges locally.
Exploits (7)
nomisec
WORKING POC
26 stars
by dexterm300 · local
https://github.com/dexterm300/CVE-2025-62215-exploit-poc
nomisec
WORKING POC
5 stars
by abrewer251 · poc
https://github.com/abrewer251/CVE-2025-62215_Windows_Kernel_PE
nomisec
WORKING POC
3 stars
by mrk336 · local
https://github.com/mrk336/Kernel-Chaos-Weaponizing-CVE-2025-62215-for-SYSTEM-Privilege-Escalation
github
WORKING POC
2 stars
by adminlove520 · pythonpoc
https://github.com/adminlove520/CVE-Poc_All_in_One/tree/main/2025/CVE-2025-62215
Scores
CVSS v3
7.0
EPSS
0.0306
EPSS Percentile
86.7%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CISA KEV
2025-11-12
VulnCheck KEV
2025-11-11
ENISA EUVD
EUVD-2025-93397
CWE
CWE-415
CWE-362
Status
published
Products (10)
microsoft/windows_10_1809
< 10.0.17763.8027 (2 CPE variants)
microsoft/windows_10_21h2
< 10.0.19044.6575
microsoft/windows_10_22h2
< 10.0.19045.6575
microsoft/windows_11_23h2
< 10.0.22631.6199
microsoft/windows_11_24h2
< 10.0.26100.7092
microsoft/windows_11_25h2
< 10.0.26200.7092
microsoft/windows_server_2019
< 10.0.17763.8027
microsoft/windows_server_2022
< 10.0.20348.4346
microsoft/windows_server_2022_23h2
< 10.0.25398.1965
microsoft/windows_server_2025
< 10.0.26100.7092
Published
Nov 11, 2025
KEV Added
Nov 12, 2025
Tracked Since
Feb 18, 2026