Elevation of Privilege Vulnerability in Microsoft Edge by Microsoft
CVE-2025-29795
7.8HIGH
Summary
A vulnerability in Microsoft Edge (Chromium-based) allows an authorized attacker to perform improper link resolution before file access, commonly referred to as 'link following'. This could enable the attacker to elevate privileges locally, potentially compromising the security of the system. Regular updates and patches are essential to mitigate the risks associated with this vulnerability.
Affected Version(s)
Microsoft Edge Update Setup Unknown 1.0.0.0 < 1.3.195.45
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved