Description
A low-privileged local attacker can exploit improper permissions on nssm.exe to escalate their privileges and gain administrative access.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-24230 | A low-privileged local attacker can exploit improper permissions on nssm.exe to escalate their privileges and gain administrative access. |
References
| Link | Providers |
|---|---|
| https://certvde.com/de/advisories/VDE-2025-063 |
|
History
Tue, 12 Aug 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 12 Aug 2025 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A low-privileged local attacker can exploit improper permissions on nssm.exe to escalate their privileges and gain administrative access. | |
| Title | Improper File Permissions Allow Local Privilege Escalation | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2025-08-12T18:03:02.285Z
Reserved: 2025-04-16T11:17:48.309Z
Link: CVE-2025-41686
Updated: 2025-08-12T18:02:42.501Z
Status : Deferred
Published: 2025-08-12T08:15:26.400
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-41686
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD