Windows Remote Access Connection Manager Vulnerabilities Let Attackers Escalate Privileges
ID: 6cab0e73-c3f0-51ee-a568-d1e18f1f19e2
STIX ID: report--6cab0e73-c3f0-51ee-a568-d1e18f1f19e2
Feed Name: cybersecurityNews.com
Threat Score
Two Important privilege escalation vulnerabilities in the Windows Remote Access Connection Manager (CVE-2025-62472 and CVE-2025-62474) were disclosed on December 9, 2025; both allow local, low-privileged attackers to obtain SYSTEM privileges, are rated CVSS 7.8, affect multiple Windows Server, Windows 11 and Windows 10 builds, and Microsoft released security updates across supported platforms the same day, while noting no public active exploitation to date.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
