CVE-2023-21725: Windows Malicious Software Removal Tool Elevation of Privilege Vulnerability
Published Jan 10, 2023
·Updated
Windows Malicious Software Removal Tool Elevation of Privilege Vulnerability
Affected Software
3 affected componentsFixes available
Microsoft Windows Malicious Software Removal Tool<5.109
Microsoft Windows Malicious Software Removal Tool 32-bit
Microsoft Windows Malicious Software Removal Tool 64-bit
Event History
Jan 10, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverity
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-21725?
CVE-2023-21725 is rated as a high severity elevation of privilege vulnerability.
2
How do I fix CVE-2023-21725?
To fix CVE-2023-21725, ensure you have updated to the latest version of the Windows Malicious Software Removal Tool.
3
What platforms are affected by CVE-2023-21725?
CVE-2023-21725 affects various versions of the Windows Malicious Software Removal Tool for both 32-bit and 64-bit platforms.
4
What type of vulnerability is CVE-2023-21725?
CVE-2023-21725 is an elevation of privilege vulnerability that allows attackers to gain elevated access to system resources.
5
Who is the vendor for CVE-2023-21725?
The vendor for CVE-2023-21725 is Microsoft, which maintains the Windows Malicious Software Removal Tool.