CVE-2025-3025: CCleaner Link Following Local Privilege Escalation Vulnerability
Elevation of Privileges in the cleaning feature of Gen Digital CCleaner version 6.33.11465 on Windows allows a local user to gain SYSTEM privileges via exploiting insecure file delete operations. Reported in CCleaner v. 6.33.11465. This issue affects CCleaner: before < 6.36.11508.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-3025?
CVE-2025-3025 has been classified as a critical vulnerability due to its potential for allowing local users to gain SYSTEM privileges.
How do I fix CVE-2025-3025?
To fix CVE-2025-3025, update CCleaner to version 6.36.11508 or later.
What versions of CCleaner are affected by CVE-2025-3025?
CVE-2025-3025 affects CCleaner versions earlier than 6.36.11508, including specifically version 6.33.11465.
What kind of attack does CVE-2025-3025 facilitate?
CVE-2025-3025 facilitates an elevation of privileges attack through insecure file delete operations.
Is CVE-2025-3025 a remote or local vulnerability?
CVE-2025-3025 is a local vulnerability that requires access to the affected machine to exploit.