← back
CVE-2025-21391

Windows Storage Elevation of Privilege Vulnerability

CVSS 7.1 HIGHEPSS 2.1%● KEVCWE-59
In short

A flaw in Windows Storage allows an attacker with local access to gain higher-level permissions on the system. This is dangerous because it enables unauthorized access to sensitive files and system functions.

Technical detail

An elevation of privilege vulnerability in Windows Storage via an insecure link or directory handling mechanism (CWE-59). An authenticated local attacker can exploit this to execute code or access resources with elevated privileges; exploitation requires prior local access to the affected system.

Summary generated and translated by AI from the official description.
Windows Storage Elevation of Privilege Vulnerability
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H/E:F/RL:O/RC:C

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →