Spoofing Vulnerability in Windows Security App by Microsoft
CVE-2025-53769

5.5MEDIUM

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
12 August 2025

What is CVE-2025-53769?

A security vulnerability in the Windows Security App allows authenticated attackers to control file names or paths. This capability can lead to local spoofing attacks, compromising system integrity and user trust. It is critical for users and administrators to be aware of this vulnerability, as it can be exploited to deceive users regarding the authenticity of files or applications. Remediation efforts should focus on ensuring proper access controls and updates to maintain secure environments.

Affected Version(s)

Windows Security App Unknown 1000.0.0.0 < 1000.27840.1000.0

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-53769 : Spoofing Vulnerability in Windows Security App by Microsoft