7.1
CVE-2025-62570
- EPSS 0.04%
- Veröffentlicht 09.12.2025 17:56:04
- Zuletzt bearbeitet 10.12.2025 19:22:23
- Quelle secure@microsoft.com
- CVE-Watchlists
- Unerledigt
Windows Camera Frame Server Monitor Information Disclosure Vulnerability
Improper access control in Windows Camera Frame Server Monitor allows an authorized attacker to disclose information locally.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows 11 24h2 Version < 10.0.26100.7392
Microsoft ≫ Windows 11 25h2 Version < 10.0.26200.7392
Microsoft ≫ Windows Server 2025 Version < 10.0.26100.7392
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.04% | 0.109 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
|
| secure@microsoft.com | 7.1 | 1.8 | 5.2 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
|
CWE-284 Improper Access Control
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.