Security Feature Bypass in Microsoft PC Manager
CVE-2025-49728

4MEDIUM

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
16 September 2025

What is CVE-2025-49728?

A vulnerability in Microsoft PC Manager enables unauthorized attackers to bypass essential security mechanisms, potentially exposing sensitive information stored in cleartext. This flaw allows malicious actors to access critical system data without appropriate authentication, highlighting the need for immediate remediation and enhanced security measures.

Affected Version(s)

Microsoft PC Manager Unknown 1.0.0 < 3.18.0.0

References

CVSS V3.1

Score:
4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-49728 : Security Feature Bypass in Microsoft PC Manager