Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2025-59501: Microsoft Configuration Manager Elevation of Privilege Vulnerability

According to the CVSS metric, the attack complexity is high (AC:H). What does that mean for this vulnerability?

For the vulnerability, this means the exploitation requires a specific and uncommon condition: an Active Directory user account must exist with a matching user principal name (UPN) that was not properly synchronized to Microsoft Entra ID.

Microsoft Security Response Center
#vulnerability#microsoft#perl#Microsoft Configuration Manager#Security Vulnerability

Microsoft Security Response Center: Latest News

CVE-2025-59501: Microsoft Configuration Manager Elevation of Privilege Vulnerability