CVE-2025-59260: Microsoft Failover Cluster Virtual Driver Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Microsoft Failover Cluster Virtual Driver allows an authorized attacker to disclose information locally.
Other sources
Microsoft Failover Cluster Virtual Driver Information Disclosure Vulnerability
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-59260?
CVE-2025-59260 has a high severity level due to the potential for information disclosure to unauthorized actors.
What systems are affected by CVE-2025-59260?
CVE-2025-59260 affects various versions of Microsoft Windows Server, including 2022, 2019, and 2016.
How do I fix CVE-2025-59260?
To resolve CVE-2025-59260, apply the recommended security updates available for your Microsoft Windows Server version.
What type of vulnerability is CVE-2025-59260?
CVE-2025-59260 is classified as an Information Disclosure vulnerability within the Microsoft Failover Cluster Virtual Driver.
Can CVE-2025-59260 be exploited remotely?
CVE-2025-59260 requires local access, meaning it cannot be exploited remotely.