CVE-2025-61973: High severity Microsoft Microsoft Store vulnerability
A local privilege escalation vulnerability exists during the installation of Epic Games Store via the Microsoft Store. A low-privilege user can replace a DLL file during the installation process, which may result in unintended elevation of privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-61973?
CVE-2025-61973 has a low severity level due to its specific conditions and limited impact.
How do I fix CVE-2025-61973?
To fix CVE-2025-61973, ensure that you have updated versions of the Epic Games Store and Microsoft Store installed that contain the necessary security patches.
Who is affected by CVE-2025-61973?
CVE-2025-61973 affects users of the Epic Games Store installed via the Microsoft Store, particularly low-privilege users.
What are the implications of CVE-2025-61973?
The implications of CVE-2025-61973 include potential unauthorized privilege escalation leading to increased access rights for attackers.
When was CVE-2025-61973 disclosed?
CVE-2025-61973 was disclosed in 2025, highlighting a local privilege escalation vulnerability during installation.