cbcvebase.
CVE-2025-55240
published 2025-10-14

CVE-2025-55240: Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally.

high7.3CVSS 3.1
AVLACLPRLUIRSUCHIHAH
Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally.

Affected

15 ranges
VendorProductVersion rangeFixed in
microsoftmicrosoft_visual_studio_2017_version_15.9>= 15.9.0 < 15.9.7715.9.77
microsoftmicrosoft_visual_studio_2019_version_16.11>= 16.11.0 < 16.11.5216.11.52
microsoftmicrosoft_visual_studio_2022_version_17.10>= 17.10.0 < 17.10.2017.10.20
microsoftmicrosoft_visual_studio_2022_version_17.12>= 17.12.0 < 17.12.1317.12.13
microsoftmicrosoft_visual_studio_2022_version_17.14>= 17.14.0 < 17.14.1717.14.17
microsoftvisual_studio_2017>= 15.0 < 15.9.7715.9.77
microsoftvisual_studio_2019>= 16.0 < 16.11.5216.11.52
microsoftvisual_studio_2022>= 17.10.0 < 17.10.2017.10.20
microsoftvisual_studio_2022>= 17.12.0 < 17.12.1317.12.13
microsoftvisual_studio_2022>= 17.14.0 < 17.14.1717.14.17
msrcmicrosoft_visual_studio_2017_version_15.9
msrcmicrosoft_visual_studio_2019_version_16.11
msrcmicrosoft_visual_studio_2022_version_17.10
msrcmicrosoft_visual_studio_2022_version_17.12
msrcmicrosoft_visual_studio_2022_version_17.14