CVE-2025-53808: Windows Defender Firewall Service Elevation of Privilege Vulnerability
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privileges locally.
Other sources
Windows Defender Firewall Service Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-53808?
CVE-2025-53808 has a high severity rating due to its potential to allow an authorized attacker to elevate privileges.
How do I fix CVE-2025-53808?
To fix CVE-2025-53808, apply the appropriate security updates provided by Microsoft for the affected Windows versions.
Which systems are vulnerable to CVE-2025-53808?
CVE-2025-53808 affects various Windows versions including Windows 10, Windows 11, and Windows Server editions.
Can CVE-2025-53808 be exploited remotely?
CVE-2025-53808 requires local access for exploitation, making it a local elevation of privilege vulnerability.
What type of vulnerability is CVE-2025-53808?
CVE-2025-53808 is classified as a type confusion vulnerability within the Windows Defender Firewall Service.