CVE-2025-26633
CVSS 3.1 Score 7 of 10 (high)
Details
Published Mar 11, 2025
Updated: Mar 13, 2025
CWE ID 707
Summary
CVE-2025-26633 is a vulnerability affecting Microsoft Management Console (MMC). An attacker can exploit this improper neutralization issue to bypass security features locally, gaining unauthorized access. This vulnerability may lead to potential data theft or system compromise if an adversary successfully exploits it. MMC is a widely used tool for managing various system configurations and applications, making this issue particularly concerning. Microsoft has released a patch to address this vulnerability, and it's recommended to apply it as soon as possible.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.