CVE-2025-59186

Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized attacker to disclose information locally.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2022_23h2:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*

History

05 Nov 2025, 21:12

Type Values Removed Values Added
First Time Microsoft
Microsoft windows Server 2025
Microsoft windows Server 2016
Microsoft windows Server 2019
Microsoft windows Server 2022 23h2
Microsoft windows Server 2022
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2022_23h2:*:*:*:*:*:*:*:*
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59186 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59186 - Vendor Advisory

Information

Published : 2025-10-14 17:15

Updated : 2025-11-05 21:12


NVD link : CVE-2025-59186

Mitre link : CVE-2025-59186

CVE.ORG link : CVE-2025-59186


JSON object : View

Products Affected

microsoft

  • windows_server_2019
  • windows_server_2022
  • windows_server_2016
  • windows_server_2025
  • windows_server_2022_23h2
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

NVD-CWE-noinfo