Microsoft Windows Server 2025
cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*
A vulnerability allowing elevation of privileges has been identified in the Host Process for Windows Tasks. This issue arises from improper link resolution before file access, a flaw that authorized attackers can exploit to gain higher privileges locally. The vulnerability affects multiple Windows 11 versions and Windows Server 2025, including Server Core installations.
Exploitation of this vulnerability could allow an attacker to gain SYSTEM privileges.
Users can download the security update for this vulnerability via the Microsoft Update Catalog. For Windows Server 2025, those with Desktop Experience installed should disable a specific task in Task Scheduler as a temporary measure, re-enabling it only after the update has been applied.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.