Information Disclosure Vulnerability in Windows License Manager by Microsoft
CVE-2025-62208

5.5MEDIUM

What is CVE-2025-62208?

An information disclosure vulnerability has been identified in Windows License Manager, enabling an authorized attacker to insert sensitive information into log files. This flaw allows attackers with legitimate access to potentially gain unauthorized insights into confidential data, posing risks for privacy and security. It’s crucial for users of Windows License Manager to take preventive actions to secure their systems against this flaw.

Affected Version(s)

Windows 10 Version 1507 32-bit Systems 10.0.10240.0 < 10.0.10240.21161

Windows 10 Version 1607 32-bit Systems 10.0.14393.0 < 10.0.14393.8519

Windows 10 Version 1809 32-bit Systems 10.0.17763.0 < 10.0.17763.7919

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-62208 : Information Disclosure Vulnerability in Windows License Manager by Microsoft