CVE-2025-53810: Windows Defender Firewall Service Elevation of Privilege Vulnerability
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privileges locally.
Other sources
Windows Defender Firewall Service Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-53810?
CVE-2025-53810 has been rated as critical due to its ability to allow attackers to elevate privileges in the Windows environment.
How do I fix CVE-2025-53810?
To fix CVE-2025-53810, apply the latest security patches released by Microsoft for affected Windows products.
Which products are affected by CVE-2025-53810?
CVE-2025-53810 affects various editions of Windows Server, Windows 10, and Windows 11.
What type of vulnerability is CVE-2025-53810?
CVE-2025-53810 is classified as an elevation of privilege vulnerability resulting from type confusion in Windows Defender Firewall Service.
Can a user exploit CVE-2025-53810 remotely?
No, CVE-2025-53810 requires local access, meaning only an authorized user on the system can exploit this vulnerability.