CVE-2025-50174: Windows Device Association Broker Service Elevation of Privilege Vulnerability
Use after free in Windows Device Association Broker service allows an authorized attacker to elevate privileges locally.
Other sources
Windows Device Association Broker Service Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-50174?
CVE-2025-50174 is classified as an elevation of privilege vulnerability in the Windows Device Association Broker service.
How do I fix CVE-2025-50174?
To fix CVE-2025-50174, users need to apply the necessary security update provided by Microsoft for their affected Windows version.
What products are affected by CVE-2025-50174?
CVE-2025-50174 affects Microsoft Windows Server 2025 and specific versions of Microsoft Windows 11.
Can CVE-2025-50174 be exploited remotely?
CVE-2025-50174 requires local access for exploitation, meaning an attacker must have authorized access to the system.
What is the main impact of CVE-2025-50174?
The main impact of CVE-2025-50174 is the potential for attackers to elevate their privileges on affected systems.