Skip to content

Windows Remote Access Connection Manager Vulnerabilities Let Attackers Escalate Privileges

Cybersecuritynews Abinaya December 12, 2025

Two critical privilege escalation flaws were disclosed in the Windows Remote Access Connection Manager on December 9, 2025. The vulnerabilities, tracked as CVE-2025-62472 and CVE-2025-62474, allow authorized attackers with low-level privileges to gain SYSTEM-level access on affected systems. CVE-2025-62472 stems from the use of uninitialized resources in the Remote Access Connection Manager. Enabling privilege escalation […]

Extracted Entities

Attack Types (1)

Platforms (1)