cbcvebase.
CVE-2025-32703
published 2025-05-13

CVE-2025-32703: Insufficient granularity of access control in Visual Studio allows an authorized attacker to disclose information locally.

medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
Insufficient granularity of access control in Visual Studio allows an authorized attacker to disclose information locally.

Affected

18 ranges
VendorProductVersion rangeFixed in
microsoftmicrosoft_visual_studio_2017_version_15.9>= 15.9.0 < 15.9.7315.9.73
microsoftmicrosoft_visual_studio_2019_version_16.11>= 16.11.0 < 16.11.4716.11.47
microsoftmicrosoft_visual_studio_2022_version_17.10>= 17.10.0 < 17.10.1417.10.14
microsoftmicrosoft_visual_studio_2022_version_17.12>= 17.12.0 < 17.12.817.12.8
microsoftmicrosoft_visual_studio_2022_version_17.13>= 17.13.0 < 17.13.717.13.7
microsoftmicrosoft_visual_studio_2022_version_17.8>= 17.8.0 < 17.8.2117.8.21
microsoftvisual_studio_2017>= 15.0 < 15.9.7315.9.73
microsoftvisual_studio_2019>= 16.0 < 16.11.4716.11.47
microsoftvisual_studio_2022>= 17.10.0 < 17.10.1417.10.14
microsoftvisual_studio_2022>= 17.12.0 < 17.12.817.12.8
microsoftvisual_studio_2022>= 17.13.0 < 17.13.717.13.7
microsoftvisual_studio_2022>= 17.8.0 < 17.8.2117.8.21
msrcmicrosoft_visual_studio_2017_version_15.9
msrcmicrosoft_visual_studio_2019_version_16.11
msrcmicrosoft_visual_studio_2022_version_17.10
msrcmicrosoft_visual_studio_2022_version_17.12
msrcmicrosoft_visual_studio_2022_version_17.13
msrcmicrosoft_visual_studio_2022_version_17.8