Elevation of Privilege Vulnerability in Microsoft Graphics Component
CVE-2025-59215

7HIGH

What is CVE-2025-59215?

An elevation of privilege vulnerability exists in the Microsoft Graphics Component when the component improperly handles objects in memory, allowing an authorized attacker to exploit the flaw and gain elevated access to system functionality. This could potentially enable the attacker to execute arbitrary code or manipulate system features, posing a risk to data integrity and system security.

Affected Version(s)

Windows 11 Version 24H2 ARM64-based Systems 10.0.26100.0 < 10.0.26100.6584

Windows Server 2025 (Server Core installation) x64-based Systems 10.0.26100.0 < 10.0.26100.6584

Windows Server 2025 x64-based Systems 10.0.26100.0 < 10.0.26100.6584

References

CVSS V3.1

Score:
7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-59215 : Elevation of Privilege Vulnerability in Microsoft Graphics Component