Skip to content

Windows Remote Access Connection Manager Flaw Allows Arbitrary Code Execution

Gbhackers Divya December 15, 2025

Security researchers have uncovered a critical unpatched vulnerability in the Windows Remote Access Connection Manager (RasMan) service that enables attackers to crash the service and facilitate local arbitrary code execution with Local System privileges. This discovery emerged during an investigation of CVE-2025-59230, which Microsoft patched in October 2025. CVE-2025-59230 represents an elevation-of-privilege vulnerability conceptually similar […]

Extracted Entities

Platforms (1)