logo

Windows Remote Access Connection Manager Vulnerabilities Let Attackers Escalate Privileges

ID: 6cab0e73-c3f0-51ee-a568-d1e18f1f19e2

STIX ID: report--6cab0e73-c3f0-51ee-a568-d1e18f1f19e2

Feed Name: cybersecurityNews.com

Threat Score
65/100

Date Published: 2025-12-12

Date Updated: 2026-04-21

Author: Abinaya

...
...

Two Important privilege escalation vulnerabilities in the Windows Remote Access Connection Manager (CVE-2025-62472 and CVE-2025-62474) were disclosed on December 9, 2025; both allow local, low-privileged attackers to obtain SYSTEM privileges, are rated CVSS 7.8, affect multiple Windows Server, Windows 11 and Windows 10 builds, and Microsoft released security updates across supported platforms the same day, while noting no public active exploitation to date.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.