CVE-2025-27811: High severity razer synapse 4 vulnerability
Published Jun 4, 2025
·Updated
A local privilege escalation in the razerelevationservice.exe in Razer Synapse 4 through 4.0.86.2502180127 allows a local attacker to escalate their privileges via a vulnerable COM interface in the target service.
Affected Software
2 affected components
Razer Synapse 4<=4.0.86.2502180127
Razer Synapse 4<=4.0.86.2502180127
Event History
Jun 4, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-27811?
CVE-2025-27811 is classified as a high severity vulnerability due to its potential for local privilege escalation.
2
How do I fix CVE-2025-27811?
To mitigate CVE-2025-27811, update Razer Synapse 4 to version 4.0.86.2502180128 or later.
3
Who is affected by CVE-2025-27811?
Users of Razer Synapse 4 versions up to and including 4.0.86.2502180127 are affected by CVE-2025-27811.
4
What type of vulnerability is CVE-2025-27811?
CVE-2025-27811 is a local privilege escalation vulnerability found in the razer_elevation_service.exe.
5
Can CVE-2025-27811 be exploited remotely?
No, CVE-2025-27811 requires local access to the vulnerable system for exploitation.