Microsoft Windows Installer Improper Link Resolution Vulnerability Allowing Local Information Disclosure

Vulnerability

A vulnerability in Windows Installer has been identified, stemming from improper link resolution before file access, commonly referred to as 'link following'. This flaw allows an authorized attacker to locally disclose information.

Impact

Exploitation of this vulnerability could lead to unauthorized information disclosure.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
3.3
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.