Description
Windows Recovery Environment Agent Elevation of Privilege Vulnerability
CVSS vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:NExploitability: 0.9 | Impact: 5.2Attack Vector: Physical
Complexity: Low
Privileges: None
User Interaction: None
Scope: Unchanged
Confidentiality: High
Integrity: High
Availability: None
Affected Packages22 packages
🔴Vulnerability Details
2GHSAGHSA-8v9j-24jq-vx9h: Windows Recovery Environment Agent Elevation of Privilege Vulnerability↗2025-01-14 ▶ CVEListWindows Recovery Environment Agent Elevation of Privilege Vulnerability↗2025-01-14 ▶ 📋Vendor Advisories
1MicrosoftWindows Recovery Environment Agent Elevation of Privilege Vulnerability↗2025-01-14 ▶ 🕵️Threat Intelligence
1BleepingcomputerMicrosoft January 2025 Patch Tuesday fixes 8 zero-days, 159 flaws↗2025-01-14 ▶