Microsoft Windows Bluetooth Service Privilege Escalation Vulnerability

Vulnerability

A use-after-free vulnerability has been identified in the Windows Bluetooth Service, allowing an authorized attacker to locally elevate privileges. This vulnerability affects multiple Windows products and versions, including Windows 10, Windows 11, Windows Server 2019, and Windows Server 2022.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing an attacker to gain SYSTEM privileges.

Remediation

Users can apply the security update KB5066835 to address this vulnerability. This security update is available through the Microsoft Update Catalog.

Added: Oct 14, 2025, 7:22 PM
Updated: Oct 14, 2025, 9:42 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
7.5
exploitability
3.3
remediation
7.7
relevance
0.7
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.