← Back

CVE-2025-25003

nvd nist
Published: Mar 11, 2025Modified: Jun 17, 2026

JSON object

Loading...
7.3
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.3 / Impact: 5.9
Source: secure@microsoft.com (Secondary)

Description

Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally.

Affected (5)

2 products
Visual Studio 2019
Visual Studio 2022
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
From 16.0 to 16.11.45
Microsoft
From 17.10.0 to 17.10.12
From 17.12.0 to 17.12.6
From 17.13.0 to 17.13.3
From 17.8.0 to 17.8.19

References (1)

Timeline

No history available yet.