
We found results for “”
CVE-2025-55247
Good to know:


Date: October 14, 2025
Improper link resolution before file access ('link following') in .NET allows an authorized attacker to elevate privileges locally.
Severity Score
Related Resources (5)
Severity Score
Weakness Type (CWE)
Improper Link Resolution Before File Access ('Link Following')
CWE-59Top Fix

Upgrade Version
Upgrade to version microsoft.build.tasks.core - 17.14.28;microsoft.build.tasks.core - 17.12.50;microsoft.build.tasks.core - 17.11.48;microsoft.build.tasks.core - 17.10.46;microsoft.build.tasks.core - 17.8.43;microsoft.build - 17.14.28;microsoft.build - 17.12.50;microsoft.build - 17.11.48;microsoft.build - 17.10.46;microsoft.build - 17.8.43;microsoft.build.utilities.core - 17.14.28;microsoft.build.utilities.core - 17.12.50;microsoft.build.utilities.core - 17.11.48;microsoft.build.utilities.core - 17.10.46;microsoft.build.utilities.core - 17.8.43
CVSS v3.1
Base Score: |
|
---|---|
Attack Vector (AV): | LOCAL |
Attack Complexity (AC): | LOW |
Privileges Required (PR): | LOW |
User Interaction (UI): | REQUIRED |
Scope (S): | UNCHANGED |
Confidentiality (C): | HIGH |
Integrity (I): | HIGH |
Availability (A): | HIGH |