logo

Windows PowerShell 0-Day Vulnerability Let Attackers Execute Malicious Code

ID: c72bdc12-bfbc-5edc-a39a-71036924578d

STIX ID: report--c72bdc12-bfbc-5edc-a39a-71036924578d

Feed Name: cybersecurityNews.com

Threat Score
65/100

Date Published: 2025-12-10

Date Updated: 2026-04-21

Author: Abinaya

...
...

**Executive summary:** Microsoft disclosed CVE-2025-54100, a Windows PowerShell vulnerability (CVSS 7.8) that allows attackers to execute arbitrary code via improper neutralization of special elements (CWE-77); the flaw affects many Windows desktop and server versions and has been addressed through multiple KB updates and recommended mitigations, though exploitation requires local access and user interaction.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.