You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve 2025 25004
About this tag
CVE-2025-25004 is a high-severity vulnerability in Microsoft PowerShell that allows an authorized local attacker to elevate privileges due to improper access control (CWE-284). Published on October 14, 2025, the flaw carries a CVSS v3.1 base score of approximately 7.3. Microsoft has released vendor updates to address the issue, and users should consult the official Microsoft Security Update Guide for specific KB articles and affected builds. This tag covers discussions and advisories related to patching and mitigating this PowerShell local privilege escalation vulnerability.
Microsoft’s vulnerability trackers and security aggregators published a new PowerShell elevation‑of‑privilege advisory identified as CVE‑2025‑25004 on October 14, 2025: the flaw is described as an improper access control (CWE‑284) in Microsoft PowerShell that can allow an authorized local...