CVE-2025-21419

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Feb 11, 2025
Updated: Feb 14, 2025
CWE ID 59

Summary

CVE-2025-21419 is an elevation of privilege vulnerability affecting Windows Setup Files. Maliciously crafted files could be used to manipulate the Setup Files Cleanup utility, allowing attackers to execute code with administrative privileges and gain unauthorized access to a system. This vulnerability poses a significant risk to organizations and individuals using the Windows operating system, especially those with outdated software or unsecured networks. It is recommended that users and administrators install the latest security patches to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share