CVE-2025-21360

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Jan 14, 2025
CWE ID 269

Summary

CVE-2025-21360 is an elevation of privilege vulnerability affecting Microsoft AutoUpdate (MAU). Successful exploitation allows attackers to gain higher system privileges, potentially leading to unauthorized access or modification of critical system configurations. This issue can be exploited remotely, posing a significant threat to organizations and individuals using impacted versions of MAU. Microsoft has released a patch to address this vulnerability, and it is strongly recommended that users apply the update as soon as possible to protect against potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share