CVE-2025-24076: Microsoft Windows Cross Device Service Elevation of Privilege Vulnerability
Improper access control in Windows Cross Device Service allows an authorized attacker to elevate privileges locally.
Other sources
Microsoft Windows Cross Device Service Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-24076?
CVE-2025-24076 is classified as a high-severity vulnerability, allowing for potential privilege escalation.
How do I fix CVE-2025-24076?
To fix CVE-2025-24076, apply the latest security patches provided by Microsoft for affected Windows systems.
Which products are affected by CVE-2025-24076?
CVE-2025-24076 affects various versions of Windows 11 and Windows Server 2025, specifically including versions 22H2 and 24H2.
What type of vulnerability is CVE-2025-24076?
CVE-2025-24076 is an access control vulnerability that can allow an authorized attacker to elevate their privileges.
Is CVE-2025-24076 remotely exploitable?
No, CVE-2025-24076 requires local access for exploitation, as it involves improper access control.