CVE-2025-54097: Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
Other sources
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54097?
CVE-2025-54097 has been classified as an information disclosure vulnerability in Windows Routing and Remote Access Service.
How do I fix CVE-2025-54097?
Fix CVE-2025-54097 by applying the relevant security patches provided by Microsoft for your affected Windows Server version.
What systems are affected by CVE-2025-54097?
CVE-2025-54097 affects various versions of Windows Server, including 2008, 2012, 2016, 2019, 2022, and 2025.
Can CVE-2025-54097 be exploited remotely?
Yes, CVE-2025-54097 can be exploited by unauthorized attackers over a network to disclose sensitive information.
What are the potential consequences of CVE-2025-54097?
The potential consequence of CVE-2025-54097 includes unauthorized access to sensitive information transmitted over the network.