Microsoft Windows DWM Core Library Privilege Escalation Vulnerability

Vulnerability

A vulnerability allowing improper input validation in the Windows DWM Core Library has been identified, which could enable an authorized attacker to locally elevate privileges. This issue affects multiple versions of Windows 10, Windows 11, Windows Server 2022, and Windows Server 2025.

Impact

Exploitation of this vulnerability could allow an attacker to gain SYSTEM privileges.

Remediation

Users can apply the security update KB5055518 for Windows 10, KB5055528 for Windows 11, KB5055526 for Windows Server 2022, and KB5055523 for Windows Server 2025. These updates are available through the Microsoft Update Catalog.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
7.5
exploitability
3.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.