Microsoft’s Security Update Guide entry for the StateRepository API points to a missing authorization check that can be abused by a locally authorized attacker to tamper with files and escalate privileges — but there’s an important CVE-number mismatch in public reporting that every admin must...
Title: CVE-2025-50171 — Remote Desktop "Missing authorization" (spoofing) vulnerability — what admins must know and do now
TL;DR (quick action checklist)
This CVE (CVE-2025-50171) is a Microsoft-reported vulnerability in Remote Desktop Server described as a “missing authorization” that allows...
I'm running the Windows 7 Beta build 7000 on an HP Pavilion zd8000 laptop. Pentium 4 3.0ghz, 2GB ram, and ATI Raedon Mobility x600 graphics chip with 256MB dedicated memory.
This morning my display was running just fine at 1650x1080, 32-bit color. After installing iTunes 8.1 and restarting...