Privilege Context Switching Error in Microsoft Windows - CVE-2025-60721
Published: November 11, 2025
Vulnerability identifier: #VU118272
CSH Severity: Low
CVSS v4: 8.5 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2025-60721
CWE-ID: CWE-270
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to privilege context switching error in Windows Administrator Protection, which leads to security restrictions bypass and privilege escalation.
Affected software
Microsoft Windows
How to mitigate CVE-2025-60721
Install updates from vendor's website.
Microsoft Windows - addressed in versions 10 1607 10.0.14393.8594, 11 24H2 10.0.26100.7092, 11 24H2 10.0.26100.7171