You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve 2025 62570
About this tag
CVE-2025-62570 is a high-severity information disclosure vulnerability in the Windows Camera Frame Server Monitor, addressed in Microsoft's December 2025 security update. With a CVSS v3.1 score of 7.1, the bug allows local attackers to access sensitive information in environments where camera or media services are shared or multi-user. The patch is part of Microsoft's December 2025 Patch Tuesday rollup, making it critical for enterprise IT administrators to apply the update promptly to mitigate exposure. Discussions on WindowsForum highlight the importance of prioritizing this fix for systems with untrusted user access.
Microsoft’s December security rollup includes a newly recorded information‑disclosure bug in the Windows Camera Frame Server Monitor, tracked as CVE‑2025‑62570, that Microsoft lists in its Security Update Guide and that third‑party trackers have scored at CVSS v3.1 7.1 (High) — a finding that...