Microsoft Surface Security Bypass Vulnerability in Microsoft Products
CVE-2025-21194

7.1HIGH

Summary

This vulnerability allows an attacker to bypass security features designed to protect sensitive information on Microsoft Surface devices. The issue arises from improper handling of certain security mechanisms, potentially leading to unauthorized access to data and system resources. Users are advised to apply patches and updates provided by Microsoft to mitigate risks associated with this vulnerability.

Affected Version(s)

Microsoft Surface Go Unknown

Microsoft Surface Hub Unknown

Microsoft Surface Laptop Go 3 Unknown

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.