CVE-2025-60715: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network.
Other sources
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-60715?
CVE-2025-60715 is classified as a critical severity vulnerability due to its potential for remote code execution.
How do I fix CVE-2025-60715?
To mitigate CVE-2025-60715, apply the latest security updates from Microsoft for affected Windows Server and client versions.
What systems are affected by CVE-2025-60715?
CVE-2025-60715 affects various versions of Windows Server, including 2008, 2012, 2016, and 2019, as well as Windows 10 and Windows 11.
What type of vulnerability is CVE-2025-60715?
CVE-2025-60715 is a heap-based buffer overflow vulnerability that allows unauthorized attackers to execute code over a network.
Is CVE-2025-60715 being actively exploited?
CVE-2025-60715 has been reported to be actively exploited in the wild, necessitating immediate patching.