Microsoft Windows Management Services Information Disclosure Vulnerability

Vulnerability

A vulnerability in Windows Management Services allows an authorized attacker to locally disclose information by exploiting the use of uninitialized resources. This issue affects multiple Windows versions, including Windows 10, Windows 11, Windows Server 2019, Windows Server 2022, and Windows Server 2025.

Impact

Exploitation of this vulnerability could lead to unauthorized information disclosure from uninitialized memory.

Remediation

Users can apply the security update for this vulnerability, which is available through the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles KB5066791, KB5066782, KB5066586, and KB5066835.

Added: Oct 14, 2025, 6:42 PM
Updated: Oct 14, 2025, 9:14 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
3.3
remediation
0.0
relevance
0.7
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.