Elevation of Privileges Vulnerability in Windows Mobile Broadband by Microsoft
CVE-2025-29811
7.8HIGH
Key Information:
- Vendor
- Microsoft
- Status
- Vendor
- CVE Published:
- 8 April 2025
Summary
An improper input validation vulnerability exists in the Windows Mobile Broadband driver, which can lead to unauthorized elevation of privileges for an attacker with local access. By exploiting this flaw, an attacker can gain elevated permissions and execute arbitrary commands, potentially compromising the system. It is crucial for users to apply security updates to mitigate the risks associated with this vulnerability.
Affected Version(s)
Windows 11 version 22H2 ARM64-based Systems 10.0.22621.0 < 10.0.22621.5191
Windows 11 version 22H3 ARM64-based Systems 10.0.22631.0 < 10.0.22621.5191
Windows 11 Version 23H2 x64-based Systems 10.0.22631.0 < 10.0.22631.5191
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved