Improper access control in Windows MultiPoint Services (CVE-2025-54116) allows a locally authorized attacker to elevate their privileges on an affected host. Executive summary
What it is: CVE-2025-54116 is an elevation-of-privilege (EoP) vulnerability in Microsoft’s Windows MultiPoint Services...
Here are the official highlights and improvements from the June 10, 2025—KB5060999 (OS Builds 22621.5472 and 22631.5472) cumulative update for Windows 11 Enterprise and Education, version 22H2, and Windows 11 version 23H2 (all editions):
Highlights
This update addresses security issues for...
In the dynamic world of education, small businesses, and corporate settings, the ability to manage multiple user sessions on a single machine can be a game-changer. Enter Windows MultiPoint Services (MPS)—a powerful feature that allows multiple users to engage with one Windows computer...
Introduction
On July 9, 2024, Microsoft published information regarding a critical vulnerability identified as CVE-2024-30013 affecting Windows MultiPoint Services. This vulnerability poses a significant risk as it allows for remote code execution, which can lead to unauthorized access and...