Elevation of Privilege Vulnerability in Windows Remote Access Connection Manager
CVE-2025-62472
7.8HIGH
Key Information:
- Vendor
Microsoft
- Status
- Vendor
- CVE Published:
- 9 December 2025
What is CVE-2025-62472?
The vulnerability involves the use of uninitialized resources within the Windows Remote Access Connection Manager, enabling an authorized attacker to potentially elevate their privileges on the affected system. This flaw can be exploited by malicious actors with local access, emphasizing the importance of applying security updates and practices to safeguard systems against unauthorized privilege escalation.
Affected Version(s)
Windows 10 Version 1607 32-bit Systems 10.0.14393.0 < 10.0.14393.8688
Windows 10 Version 1809 32-bit Systems 10.0.17763.0 < 10.0.17763.8146
Windows 10 Version 21H2 32-bit Systems 10.0.19044.0 < 10.0.19044.6691