Elevation of Privilege Vulnerability in Microsoft Brokering File System
CVE-2025-62569

7HIGH

What is CVE-2025-62569?

A use after free vulnerability in Microsoft Brokering File System enables an authorized attacker to elevate privileges locally. This flaw could potentially allow the attacker to execute arbitrary code with elevated permissions, thereby compromising system integrity and unauthorized access to sensitive data. It is crucial for users to apply updates and mitigations provided by Microsoft to safeguard against it.

Affected Version(s)

Windows 11 Version 24H2 ARM64-based Systems 10.0.26100.0 < 10.0.26100.7462

Windows 11 Version 25H2 Unknown 10.0.26200.0 < 10.0.26200.7462

Windows Server 2022, 23H2 Edition (Server Core installation) x64-based Systems 10.0.25398.0 < 10.0.25398.2025

References

CVSS V3.1

Score:
7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-62569 : Elevation of Privilege Vulnerability in Microsoft Brokering File System