ID:11621 - Exploit for Improper access control in Windows and Windows Server - CVE-2025-24076

 
Main Vulnerability Database Exploits ID:11621 - Exploit for Improper access control in Windows and Windows Server - CVE-2025-24076

ID:11621 - Exploit for Improper access control in Windows and Windows Server - CVE-2025-24076

Published: June 13, 2025


Vulnerability identifier: #VU105526
Vulnerability risk: Low
CVE-ID: CVE-2025-24076
CWE-ID: CWE-284
Exploitation vector: Local access
Vulnerable software:
Windows
Windows Server

Link to public exploit:


Vulnerability description

The vulnerability allows a local user to gain unauthorized access to otherwise restricted functionality.

The vulnerability exists due to improper access restrictions in Microsoft Windows Cross Device Service. A local user can bypass implemented security restrictions and gain elevated privileges on the target system.


Remediation

Install updates from vendor's website.