Critical Windows Remote Access Connection Manager Vulnerabilities Disclosed
First seen 12 Dec 2025, 09:52 UTC
•

•35
Export
Article Content
Browse articles
On December 9, 2025, two critical vulnerabilities were disclosed in the Windows Remote Access Connection Manager, identified as CVE-2025-62472 and CVE-2025-62474. These flaws allow authorized attackers with low-level privileges to escalate their access to SYSTEM-level on affected systems by exploiting uninitialized resources. Users of the affected systems are at risk of privilege escalation attacks.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Google Addresses Eighth Chrome Zero-Day Vulnerability in 2025
China-linked Cyber Group Expands Targeting to Southeastern Europe
China-Nexus APT UAT-7290 Targets South Asia Telecoms in Cyber Espionage Campaign
China-linked UAT-7290 Targets Telcos in Cyberespionage Campaign
UAT-7290 Cyber Espionage Targets South Asian Telecoms
APT28 Exploits MSHTML Zero-Day Vulnerability in Windows