Microsoft Surface Security Bypass Vulnerability in Microsoft Products
CVE-2025-21194
7.1HIGH
Key Information:
- Vendor
- Microsoft
- Status
- Vendor
- CVE Published:
- 11 February 2025
Summary
This vulnerability allows an attacker to bypass security features designed to protect sensitive information on Microsoft Surface devices. The issue arises from improper handling of certain security mechanisms, potentially leading to unauthorized access to data and system resources. Users are advised to apply patches and updates provided by Microsoft to mitigate risks associated with this vulnerability.
Affected Version(s)
Microsoft Surface Go Unknown
Microsoft Surface Hub Unknown
Microsoft Surface Laptop Go 3 Unknown
References
CVSS V3.1
Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved