V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsDocs
CVE-2025-60710
MSR
High KEVConfirmedExploit available

Improper link resolution before file access ('link following') in Host Process for Windows Tasks allows an authorized attacker to elevate p…

CVSS
7.8
High
EPSS
0.21
p95
Published
2025-01-01
Updated
2026-04-13
Description

Improper link resolution before file access ('link following') in Host Process for Windows Tasks allows an authorized attacker to elevate privileges locally.

Tags · CWE
KEV
CWE-59
CAPEC-17
CAPEC-35
CAPEC-76
CAPEC-132
Affected products
Windows_11_24h2 < 10.0.26100.7392Windows_11_25h2 < 10.0.26200.7392Windows_server_2025 < 10.0.26100.7392
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Timeline
2025-01-01
Published
2026-04-13
Added to KEV
2026-04-13
Updated
CVSS 3.1 breakdown
Attack Vector
AV: L
Local (L)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: L
Low (L)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.208 · p95
Known exploited (KEV)
Yes
MITRE ATT&CK
Inferred via CAPEC
└ via CAPEC-35 · CWE-59
└ via CAPEC-35 · CWE-59
└ via CAPEC-132 · CWE-59
└ via CAPEC-35 · CWE-59
Known exploits — Сканер-ВС
CVE-2025-60710
github-poc · https://github.com/redpack-kr/CVE-2025-60710
Enterprise
Affected software
ProductVendorStatus
windows_11_24h2*Exploited
windows_11_25h2*Exploited
windows_server_2025*Exploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited
WindowsMicrosoftExploited