CVE-2025-21206

CVSS 3.1 Score 7.3 of 10 (high)

Details

Published Feb 11, 2025
CWE ID 427

Summary

CVE-2025-21206 is an elevation of privilege vulnerability affecting the Visual Studio Installer. Successful exploitation allows an attacker to gain higher system privileges, potentially leading to unauthorized access or modification of sensitive data. This issue could occur during the installation process when the installer fails to properly validate user input or permissions. Users are advised to update their Visual Studio Installers as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share