CVE-2025-62572

7.8

Microsoft · Windows

An out-of-bounds read vulnerability in Application Information Services allows an authenticated local attacker to achieve privilege escalation on affected Windows systems.

Executive summary

A critical local privilege escalation vulnerability exists in Microsoft Windows Application Information Services that could allow an authenticated attacker to gain elevated system permissions.

Vulnerability

The flaw is an out-of-bounds read (CWE-125) within the Application Information Services component. It requires an attacker to already possess local access with low privileges to trigger the condition and elevate their status.

Business impact

Successful exploitation of this vulnerability allows a local user to escalate their privileges, potentially gaining full control over the affected system. Given the CVSS score of 7.8, this poses a significant risk to organizational security, as it facilitates lateral movement, data theft, and the disruption of critical business services by malicious insiders or compromised user accounts.

Remediation

Immediate Action: Update all affected Windows systems to the versions specified in the Microsoft security update guide to resolve the out-of-bounds read flaw.

Proactive Monitoring: Monitor system logs for unusual process execution patterns or unexpected calls to Application Information Services that may indicate an attempt to exploit local privilege escalation vectors.

Compensating Controls: Enforce the principle of least privilege for all local user accounts to minimize the potential impact if a low-privileged account is compromised.

Exploitation status

Public Exploit Available: No

Analyst recommendation

Organizations should prioritize the deployment of the relevant Microsoft security patches across all identified Windows 11 and Server 2025 instances. Because this vulnerability enables privilege escalation, failing to patch allows an attacker to bypass standard security boundaries, making immediate remediation essential for maintaining the integrity of the local environment.

More Microsoft CVEs

Sources