CVE-2025-26633

CVSS 3.1 Score 7 of 10 (high)

Details

Published Mar 11, 2025
Updated: Mar 13, 2025
CWE ID 707

Summary

CVE-2025-26633 is a vulnerability affecting Microsoft Management Console (MMC). An attacker can exploit this improper neutralization issue to bypass security features locally, gaining unauthorized access. This vulnerability may lead to potential data theft or system compromise if an adversary successfully exploits it. MMC is a widely used tool for managing various system configurations and applications, making this issue particularly concerning. Microsoft has released a patch to address this vulnerability, and it's recommended to apply it as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share