vulnerability
Microsoft Windows: CVE-2025-47980: Windows Imaging Component Information Disclosure Vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:L/AC:L/Au:N/C:C/I:N/A:N) | Jul 8, 2025 | Jul 8, 2025 | Sep 15, 2025 |
Severity
5
CVSS
(AV:L/AC:L/Au:N/C:C/I:N/A:N)
Published
Jul 8, 2025
Added
Jul 8, 2025
Modified
Sep 15, 2025
Description
Exposure of sensitive information to an unauthorized actor in Windows Imaging Component allows an unauthorized attacker to disclose information locally.
Solutions
microsoft-windows-windows_10-1507-kb5062561microsoft-windows-windows_10-1607-kb5062560microsoft-windows-windows_10-1809-kb5062557microsoft-windows-windows_10-21h2-kb5062554microsoft-windows-windows_10-22h2-kb5062554microsoft-windows-windows_11-22h2-kb5062552microsoft-windows-windows_11-23h2-kb5062552microsoft-windows-windows_11-24h2-kb5062553microsoft-windows-windows_server_2012-kb5062592microsoft-windows-windows_server_2012_r2-kb5062597microsoft-windows-windows_server_2016-1607-kb5062560microsoft-windows-windows_server_2019-1809-kb5062557microsoft-windows-windows_server_2022-21h2-kb5062572microsoft-windows-windows_server_2022-22h2-kb5062572microsoft-windows-windows_server_2022-23h2-kb5062570microsoft-windows-windows_server_2025-24h2-kb5062553
References
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.