Microsoft Windows 11
cpe:2.3:o:microsoft:windows_11:*:*:*:*:*:*:*
A vulnerability in the Windows Recovery Environment Agent has been identified, allowing unauthorized attackers to bypass a security feature through physical access. This issue arises from improper removal of sensitive information before it is stored or transferred, potentially enabling access to encrypted data by circumventing the BitLocker Device Encryption feature.
Exploitation of this vulnerability could lead to a security feature bypass, allowing access to encrypted data by circumventing BitLocker Device Encryption on the system storage device.
Users can download the security update for this vulnerability via the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles KB5082200, KB5082052, KB5082060, KB5082123, and KB5082198.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.