Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2025-49680: Windows Performance Recorder (WPR) Denial of Service Vulnerability

According to the CVSS metric, user interaction is required (UI:R) and privileges required is Low (PR:L). What does that mean for this vulnerability?

Exploitation of this attack requires a local attacker to create arbitrary directories. User interaction is necessary as the attacker relies on an Administrator to run wprui.exe for the first time.

Microsoft Security Response Center
#vulnerability#windows#dos#Windows Performance Recorder#Security Vulnerability

Microsoft Security Response Center: Latest News

CVE-2025-47988: Azure Monitor Agent Remote Code Execution Vulnerability