CVE-2025-47161

Improper access control in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.
CVSS

No CVSS.

Configurations

Configuration 1 (hide)

cpe:2.3:a:microsoft:defender_for_endpoint:*:*:*:*:*:linux:*:*

History

08 Jul 2025, 16:15

Type Values Removed Values Added
Summary Microsoft Defender for Endpoint Elevation of Privilege Vulnerability Improper access control in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.
CVSS v2 : unknown
v3 : 7.8
v2 : unknown
v3 : unknown
CWE CWE-284

04 Jun 2025, 20:03

Type Values Removed Values Added
CWE NVD-CWE-noinfo
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-47161 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-47161 - Vendor Advisory
First Time Microsoft
Microsoft defender For Endpoint
CPE cpe:2.3:a:microsoft:defender_for_endpoint:*:*:*:*:*:linux:*:*

15 May 2025, 20:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-15 20:16

Updated : 2025-07-08 16:15


NVD link : CVE-2025-47161

Mitre link : CVE-2025-47161


JSON object : View

Products Affected

microsoft

  • defender_for_endpoint