CVE-2025-26633
KEV RANSOMWAREHIGH 7.0EPSS 30.4%
Improper neutralization in Microsoft Management Console allows an unauthorized attacker to bypass a security feature locally.
- CVSS v3.1
- 7.0 HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H - EPSS
- 30.39% chance of exploitation in the next 30 days, 98th percentile
- CISA KEV
- added 2025-03-11, used in ransomware campaigns
- Published
- 2025-03-11
- Updated
- 2026-08-05
Proof-of-concept exploits (4)
- https://www.vicarius.io/vsociety/posts/cve-2025-26633-security-feature-bypass-in-microsof…
- https://www.vicarius.io/vsociety/posts/cve-2025-26633-security-feature-bypass-in-microsof…
- sandsoncosta/CVE-2025-266332★ · 2025-04-08
- tobivader/evil-twin-mmcdetector0★ · 2025-04-01