CVE-2025-54913 — Windows UI XAML Maps (MapControlSettings)
Race-condition elevation-of-privilege: what admins, developers, and defenders need to know
Summary
What it is: CVE-2025-54913 is an elevation-of-privilege vulnerability in the Windows UI XAML Maps component (MapControlSettings). The...
Microsoft has acknowledged a compatibility regression introduced by the August 12, 2025 cumulative Windows updates that can cause unexpected User Account Control (UAC) elevation prompts and MSI Error 1730 failures for non‑administrator users when applications trigger Windows Installer (MSI)...
Deployment Image Servicing and Management (DISM) is the built‑in Windows tool for repairing the Windows component store and servicing images — and when used correctly it’s the most reliable first‑line fix for persistent Windows 11 stability problems that never quite go away after normal...
cbs logs
command line
component store
dism
dism.log
elevation
image servicing
in-place upgrade
install.esd
install.wim
offline source
powershell
repair tools
sfc
system maintenance
troubleshooting
windows 11
windows update
winre
wsus
I have the very old Lotus SmartSuite installed on Windows 11 and the functions I need work fine in Windows XP compatibility. What doesn't work is starting SmartCenter at startup. It worked on Windows 10, but doesn't start on Windows 11 when in the Startup programs.
I added the SmartCenter...
admin rights
compatibility
elevation
error message
file issues
internet speed
legacy software
lotus
program functionality
security
smartcenter
smartsuite
startup
startup programs
system settings
troubleshooting
user account control
windows 10
windows 11
windows xp
Revision Note: V1.0 (June 27, 2017): Advisory published.
Summary: Microsoft is releasing this security advisory to inform customers that a new version of Azure Active Directory (AD) Connect is available that addresses an Important security vulnerability.
Continue reading...
Severity Rating: Important
Revision Note: V1.0 (November 8, 2016): Bulletin published
Summary: This security update resolves multiple vulnerabilities in Microsoft Windows. The more severe of the vulnerabilities could allow elevation of privilege. To exploit this vulnerability, the attacker would...
Severity Rating: Important
Revision Note: V1.0 (November 8, 2016): Click here to enter text.
Summary: This security update resolves vulnerabilities in Microsoft Windows. The most severe of the vulnerabilities could allow elevation of privilege if an attacker logs on to an affected system and...
2016
application
control
drivers
elevation
important
kernel
microsoft
ms16-135
patch
privilege
revision
security
system
threat
update
update 3199135
vulnerability
windows
Severity Rating: Important
Revision Note: V1.0 (October 11, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Windows. The vulnerabilities could allow elevation of privilege if an attacker can access sensitive registry information.
Continue reading...
2016
3193227
access
bulletin
elevation
important
information
maintenance
microsoft
ms16-124
october
patch
privileged
registry
revision
security
software
update
vulnerability
windows
Severity Rating: Important
Revision Note: V1.0 (August 9, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Windows. The vulnerabilities could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted...
attacker
august 2016
bulletin
control
crafted application
drivers
elevation
important
kernel-mode
microsoft
ms16-098
patch
privilege
revision
security
system
update
vulnerability
windows
Severity Rating: Important
Revision Note: V1.0 (June 14, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Windows. The vulnerabilities could allow elevation of privilege if the Web Proxy Auto Discovery (WPAD) protocol falls back to a vulnerable proxy...
bulletin
discovery
elevation
important
june 2016
microsoft
ms16-077
patch
process
proxy
resolution
revision
security
security patch
software
technet
update
vulnerability
windows
wpad
Severity Rating: Important
Revision Note: V1.0 (June 14, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Windows. The most severe of the vulnerabilities could allow elevation of privilege if an attacker logs on to an affected system and runs a...
2016
application
bulletin
crafted
drivers
elevation
important
kernel-mode
microsoft
ms16-073
privilege
revision
security
security update
system
technet
update
version 1.0
vulnerabilities
windows
Severity Rating: Important
Revision Note: V1.0 (May 10, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Windows. The more severe of the vulnerabilities could allow elevation of privilege if an attacker logs on to an affected system and runs a...
Severity Rating: Important
Revision Note: V1.0 (January 12, 2016): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Windows. The vulnerabilities could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted...
Severity Rating: Important
Revision Note: V1.0 (December 8, 2015): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Windows. The vulnerabilities could allow elevation of privilege if an attacker logs on to a target system and runs a specially crafted...
Severity Rating: Important
Revision Note: V1.0 (September 8, 2015): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft .NET Framework. The most severe of the vulnerabilities could allow elevation of privilege if a user runs a specially crafted .NET...
Severity Rating: Important
Revision Note: V1.0 (September 8, 2015): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Windows. The vulnerabilities could allow elevation of privilege if an attacker logs on to a system and runs a specially crafted application...
application
bulletin
elevation
important
microsoft
ms15-102
patch
privilege
resolution
security
september 2015
task management
update
vulnerability
windows
Severity Rating: Important
Revision Note: V1.0 (August 11, 2015): Bulletin published.
Summary: This security update resolves a vulnerability in Microsoft System Center Operations Manager. The vulnerability could allow elevation of privilege if a user visits an affected website by way of a...
2015
attack
bulletin
crafted link
elevation
email
important
instant messenger
microsoft
operations manager
patch
privilege
risk
security
system center
update
url
user awareness
vulnerability
website