Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

cve CVE-2025-62470 1 source, 1 claim · Watch

NVD writes:
Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally. Desbordamiento de búfer basado en montículo en el controlador del sistema de archivos de registro común de Windows permite a un atacante autorizado elevar privilegios localmente. the claim

What it is to other things

affectsmicrosoft/windows_10_1607
NVD
affectsmicrosoft/windows_10_1809
NVD
affectsmicrosoft/windows_10_21h2
NVD
affectsmicrosoft/windows_10_22h2
NVD
affectsmicrosoft/windows_11_23h2
NVD
affectsmicrosoft/windows_11_24h2
NVD
affectsmicrosoft/windows_11_25h2
NVD
affectsmicrosoft/windows_server_2008
NVD
affectsmicrosoft/windows_server_2012
NVD
affectsmicrosoft/windows_server_2016
NVD
affectsmicrosoft/windows_server_2019
NVD
affectsmicrosoft/windows_server_2022
NVD
affectsmicrosoft/windows_server_2022_23h2
NVD
affectsmicrosoft/windows_server_2025
NVD
made_bymicrosoft
NVD

In words only, so not counted until a person confirms one:

affectsmicrosoft/windows_10_version_1607
NVD says “Microsoft · Windows 10 Version 1607”

What each source says

PropertySourceSaidMeans here
Cvss
cvss
NVD7.8
receipt
Source
NVD
Its words
7.8
Read by
field:cve.metrics.cvssMetricV31[].cvssData.baseScore
Said since
2026-10-02 12:00 UTC
Last answered
2026-10-04 18:16 UTC
Original
open at the source
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 1607",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.14393.8688",
                "status": "affected",
                "version": "10.0.14393.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 1809",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.17763.8146",
                "status": "affected",
                "version": "10.0.17763.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "ARM64-based Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 21H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.19044.6691",
                "status": "affected",
                "version": "10.0.19044.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "ARM64-based Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 22H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.19045.6691",
                "status": "affected",
                "version": "10.0.19045.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "ARM64-based Systems"
            ],
            "product": "Windows 11 version 22H3",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.22631.6345",
                "status": "affected",
                "version": "10.0.22631.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows 11 Version 23H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.22631.6345",
                "status": "affected",
                "version": "10.0.22631.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "ARM64-based Systems",
              "x64-based Systems"
            ],
            "product": "Windows 11 Version 24H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26100.7462",
                "status": "affected",
                "version": "10.0.26100.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "product": "Windows 11 Version 25H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26200.7462",
                "status": "affected",
                "version": "10.0.26200.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 R2 Service Pack 1",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.1.7601.28064",
                "status": "affected",
                "version": "6.1.7601.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.1.7601.28064",
                "status": "affected",
                "version": "6.1.7601.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 Service Pack 2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.0.6003.23666",
                "status": "affected",
                "version": "6.0.6003.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 Service Pack 2 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.0.6003.23666",
                "status": "affected",
                "version": "6.0.6003.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.2.9200.25815",
                "status": "affected",
                "version": "6.2.9200.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.2.9200.25815",
                "status": "affected",
                "version": "6.2.9200.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012 R2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.3.9600.22920",
                "status": "affected",
                "version": "6.3.9600.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012 R2 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.3.9600.22920",
                "status": "affected",
                "version": "6.3.9600.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2016",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.14393.8688",
                "status": "affected",
                "version": "10.0.14393.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2016 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.14393.8688",
                "status": "affected",
                "version": "10.0.14393.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2019",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.17763.8146",
                "status": "affected",
                "version": "10.0.17763.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2019 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.17763.8146",
                "status": "affected",
                "version": "10.0.17763.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2022",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.20348.4529",
                "status": "affected",
                "version": "10.0.20348.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2022, 23H2 Edition (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.25398.2025",
                "status": "affected",
                "version": "10.0.25398.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2025",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26100.7462",
                "status": "affected",
                "version": "10.0.26100.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2025 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26100.7462",
                "status": "affected",
                "version": "10.0.26100.0",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "secure@microsoft.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x64:*",
                "matchCriteriaId": "B1A4A63C-AA10-4A4B-8FD6-0519D1F7DFE9",
                "versionEndExcluding": "10.0.14393.8688",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:*",
                "matchCriteriaId": "BCB3A273-FB6E-43DC-A247-363179C2400C",
                "versionEndExcluding": "10.0.14393.8688",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*",
                "matchCriteriaId": "5CEB496A-8AF3-458D-B466-16204E535DE0",
                "versionEndExcluding": "10.0.17763.8146",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:*",
                "matchCriteriaId": "C99D0580-E443-4440-A211-19BA3C2C4AFA",
                "versionEndExcluding": "10.0.17763.8146",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "9D04167A-522C-433E-8CEB-C1D8A02C23D8",
                "versionEndExcluding": "10.0.19044.6691",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "A86D6CDC-55E5-4817-A6CE-4CE41921FB79",
                "versionEndExcluding": "10.0.19045.6691",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "6DCE32D0-A9E0-4029-AB35-5E202A42AF01",
                "versionEndExcluding": "10.0.22631.6345",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "8DCD2A6E-7CD0-4FCC-AC11-5A1470776C24",
                "versionEndExcluding": "10.0.26100.7392",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_11_25h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "8EA08CDD-D682-403D-8B50-879EB4D88C67",
                "versionEndExcluding": "10.0.26200.7392",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x64:*",
                "matchCriteriaId": "2127D10C-B6F3-4C1D-B9AA-5D78513CC996",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x86:*",
                "matchCriteriaId": "AB425562-C0A0-452E-AABE-F70522F15E1A",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*",
                "matchCriteriaId": "AF07A81D-12E5-4B1D-BFF9-C8D08C32FF4F",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:*",
                "matchCriteriaId": "A7DF96F8-BA6A-4780-9CA3-F719B3F81074",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*",
                "matchCriteriaId": "DB18C4CE-5917-401E-ACF7-2747084FD36E",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "992FE0C2-27E6-4D04-8200-7831DE13C58E",
                "versionEndExcluding": "10.0.14393.8688",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "A20DBDB1-D0DE-4800-8BEA-35EE5D53659D",
                "versionEndExcluding": "10.0.17763.8146",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "C552FBB4-8F98-492E-A084-AF14C9514A67",
                "versionEndExcluding": "10.0.20348.4467",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2022_23h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "E9CE4A36-DA42-40CC-8724-E30A22CA84B6",
                "versionEndExcluding": "10.0.25398.2025",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "35BBEADA-D039-479B-A1BA-B2A7E37235BE",
                "versionEndExcluding": "10.0.26100.7392",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally."
      },
      {
        "lang": "es",
        "value": "Desbordamiento de búfer basado en montículo en el controlador del sistema de archivos de registro común de Windows permite a un atacante autorizado elevar privilegios localmente."
      }
    ],
    "id": "CVE-2025-62470",
    "lastModified": "2026-09-30T20:10:00.247",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "LOCAL",
            "availabilityImpact": "HIGH",
            "baseScore": 7.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "LOW",
            "scope": "UNCHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 1.8,
          "impactScore": 5.9,
          "source": "secure@microsoft.com",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2025-62470",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2025-12-10T04:56:22.423444Z",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2025-12-09T18:15:59.227",
    "references": [
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Vendor Advisory"
        ],
        "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-62470"
      }
    ],
    "sourceIdentifier": "secure@microsoft.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-122"
          }
        ],
        "source": "secure@microsoft.com",
        "type": "Secondary"
      }
    ]
  }
}
—
Product
product
NVDWindows 10 Version 1607
receipt
Source
NVD
Its words
Windows 10 Version 1607
Read by
field:cve.affected[].affectedData[].product
Said since
2026-10-02 12:00 UTC
Last answered
2026-10-04 18:16 UTC
Original
open at the source
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 1607",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.14393.8688",
                "status": "affected",
                "version": "10.0.14393.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 1809",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.17763.8146",
                "status": "affected",
                "version": "10.0.17763.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "ARM64-based Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 21H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.19044.6691",
                "status": "affected",
                "version": "10.0.19044.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "ARM64-based Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 22H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.19045.6691",
                "status": "affected",
                "version": "10.0.19045.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "ARM64-based Systems"
            ],
            "product": "Windows 11 version 22H3",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.22631.6345",
                "status": "affected",
                "version": "10.0.22631.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows 11 Version 23H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.22631.6345",
                "status": "affected",
                "version": "10.0.22631.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "ARM64-based Systems",
              "x64-based Systems"
            ],
            "product": "Windows 11 Version 24H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26100.7462",
                "status": "affected",
                "version": "10.0.26100.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "product": "Windows 11 Version 25H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26200.7462",
                "status": "affected",
                "version": "10.0.26200.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 R2 Service Pack 1",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.1.7601.28064",
                "status": "affected",
                "version": "6.1.7601.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.1.7601.28064",
                "status": "affected",
                "version": "6.1.7601.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 Service Pack 2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.0.6003.23666",
                "status": "affected",
                "version": "6.0.6003.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 Service Pack 2 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.0.6003.23666",
                "status": "affected",
                "version": "6.0.6003.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.2.9200.25815",
                "status": "affected",
                "version": "6.2.9200.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.2.9200.25815",
                "status": "affected",
                "version": "6.2.9200.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012 R2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.3.9600.22920",
                "status": "affected",
                "version": "6.3.9600.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012 R2 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.3.9600.22920",
                "status": "affected",
                "version": "6.3.9600.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2016",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.14393.8688",
                "status": "affected",
                "version": "10.0.14393.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2016 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.14393.8688",
                "status": "affected",
                "version": "10.0.14393.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2019",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.17763.8146",
                "status": "affected",
                "version": "10.0.17763.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2019 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.17763.8146",
                "status": "affected",
                "version": "10.0.17763.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2022",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.20348.4529",
                "status": "affected",
                "version": "10.0.20348.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2022, 23H2 Edition (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.25398.2025",
                "status": "affected",
                "version": "10.0.25398.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2025",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26100.7462",
                "status": "affected",
                "version": "10.0.26100.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2025 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26100.7462",
                "status": "affected",
                "version": "10.0.26100.0",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "secure@microsoft.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x64:*",
                "matchCriteriaId": "B1A4A63C-AA10-4A4B-8FD6-0519D1F7DFE9",
                "versionEndExcluding": "10.0.14393.8688",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:*",
                "matchCriteriaId": "BCB3A273-FB6E-43DC-A247-363179C2400C",
                "versionEndExcluding": "10.0.14393.8688",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*",
                "matchCriteriaId": "5CEB496A-8AF3-458D-B466-16204E535DE0",
                "versionEndExcluding": "10.0.17763.8146",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:*",
                "matchCriteriaId": "C99D0580-E443-4440-A211-19BA3C2C4AFA",
                "versionEndExcluding": "10.0.17763.8146",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "9D04167A-522C-433E-8CEB-C1D8A02C23D8",
                "versionEndExcluding": "10.0.19044.6691",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "A86D6CDC-55E5-4817-A6CE-4CE41921FB79",
                "versionEndExcluding": "10.0.19045.6691",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "6DCE32D0-A9E0-4029-AB35-5E202A42AF01",
                "versionEndExcluding": "10.0.22631.6345",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "8DCD2A6E-7CD0-4FCC-AC11-5A1470776C24",
                "versionEndExcluding": "10.0.26100.7392",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_11_25h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "8EA08CDD-D682-403D-8B50-879EB4D88C67",
                "versionEndExcluding": "10.0.26200.7392",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x64:*",
                "matchCriteriaId": "2127D10C-B6F3-4C1D-B9AA-5D78513CC996",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x86:*",
                "matchCriteriaId": "AB425562-C0A0-452E-AABE-F70522F15E1A",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*",
                "matchCriteriaId": "AF07A81D-12E5-4B1D-BFF9-C8D08C32FF4F",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:*",
                "matchCriteriaId": "A7DF96F8-BA6A-4780-9CA3-F719B3F81074",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*",
                "matchCriteriaId": "DB18C4CE-5917-401E-ACF7-2747084FD36E",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "992FE0C2-27E6-4D04-8200-7831DE13C58E",
                "versionEndExcluding": "10.0.14393.8688",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "A20DBDB1-D0DE-4800-8BEA-35EE5D53659D",
                "versionEndExcluding": "10.0.17763.8146",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "C552FBB4-8F98-492E-A084-AF14C9514A67",
                "versionEndExcluding": "10.0.20348.4467",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2022_23h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "E9CE4A36-DA42-40CC-8724-E30A22CA84B6",
                "versionEndExcluding": "10.0.25398.2025",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "35BBEADA-D039-479B-A1BA-B2A7E37235BE",
                "versionEndExcluding": "10.0.26100.7392",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally."
      },
      {
        "lang": "es",
        "value": "Desbordamiento de búfer basado en montículo en el controlador del sistema de archivos de registro común de Windows permite a un atacante autorizado elevar privilegios localmente."
      }
    ],
    "id": "CVE-2025-62470",
    "lastModified": "2026-09-30T20:10:00.247",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "LOCAL",
            "availabilityImpact": "HIGH",
            "baseScore": 7.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "LOW",
            "scope": "UNCHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 1.8,
          "impactScore": 5.9,
          "source": "secure@microsoft.com",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2025-62470",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2025-12-10T04:56:22.423444Z",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2025-12-09T18:15:59.227",
    "references": [
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Vendor Advisory"
        ],
        "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-62470"
      }
    ],
    "sourceIdentifier": "secure@microsoft.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-122"
          }
        ],
        "source": "secure@microsoft.com",
        "type": "Secondary"
      }
    ]
  }
}
—
Status
status
NVDAnalyzed
receipt
Source
NVD
Its words
Analyzed
Read by
field:cve.vulnStatus
Said since
2026-10-02 12:00 UTC
Last answered
2026-10-04 18:16 UTC
Original
open at the source
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 1607",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.14393.8688",
                "status": "affected",
                "version": "10.0.14393.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 1809",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.17763.8146",
                "status": "affected",
                "version": "10.0.17763.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "ARM64-based Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 21H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.19044.6691",
                "status": "affected",
                "version": "10.0.19044.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "ARM64-based Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 22H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.19045.6691",
                "status": "affected",
                "version": "10.0.19045.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "ARM64-based Systems"
            ],
            "product": "Windows 11 version 22H3",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.22631.6345",
                "status": "affected",
                "version": "10.0.22631.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows 11 Version 23H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.22631.6345",
                "status": "affected",
                "version": "10.0.22631.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "ARM64-based Systems",
              "x64-based Systems"
            ],
            "product": "Windows 11 Version 24H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26100.7462",
                "status": "affected",
                "version": "10.0.26100.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "product": "Windows 11 Version 25H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26200.7462",
                "status": "affected",
                "version": "10.0.26200.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 R2 Service Pack 1",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.1.7601.28064",
                "status": "affected",
                "version": "6.1.7601.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.1.7601.28064",
                "status": "affected",
                "version": "6.1.7601.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 Service Pack 2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.0.6003.23666",
                "status": "affected",
                "version": "6.0.6003.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 Service Pack 2 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.0.6003.23666",
                "status": "affected",
                "version": "6.0.6003.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.2.9200.25815",
                "status": "affected",
                "version": "6.2.9200.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.2.9200.25815",
                "status": "affected",
                "version": "6.2.9200.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012 R2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.3.9600.22920",
                "status": "affected",
                "version": "6.3.9600.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012 R2 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.3.9600.22920",
                "status": "affected",
                "version": "6.3.9600.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2016",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.14393.8688",
                "status": "affected",
                "version": "10.0.14393.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2016 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.14393.8688",
                "status": "affected",
                "version": "10.0.14393.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2019",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.17763.8146",
                "status": "affected",
                "version": "10.0.17763.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2019 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.17763.8146",
                "status": "affected",
                "version": "10.0.17763.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2022",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.20348.4529",
                "status": "affected",
                "version": "10.0.20348.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2022, 23H2 Edition (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.25398.2025",
                "status": "affected",
                "version": "10.0.25398.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2025",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26100.7462",
                "status": "affected",
                "version": "10.0.26100.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2025 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26100.7462",
                "status": "affected",
                "version": "10.0.26100.0",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "secure@microsoft.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x64:*",
                "matchCriteriaId": "B1A4A63C-AA10-4A4B-8FD6-0519D1F7DFE9",
                "versionEndExcluding": "10.0.14393.8688",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:*",
                "matchCriteriaId": "BCB3A273-FB6E-43DC-A247-363179C2400C",
                "versionEndExcluding": "10.0.14393.8688",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*",
                "matchCriteriaId": "5CEB496A-8AF3-458D-B466-16204E535DE0",
                "versionEndExcluding": "10.0.17763.8146",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:*",
                "matchCriteriaId": "C99D0580-E443-4440-A211-19BA3C2C4AFA",
                "versionEndExcluding": "10.0.17763.8146",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "9D04167A-522C-433E-8CEB-C1D8A02C23D8",
                "versionEndExcluding": "10.0.19044.6691",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "A86D6CDC-55E5-4817-A6CE-4CE41921FB79",
                "versionEndExcluding": "10.0.19045.6691",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "6DCE32D0-A9E0-4029-AB35-5E202A42AF01",
                "versionEndExcluding": "10.0.22631.6345",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "8DCD2A6E-7CD0-4FCC-AC11-5A1470776C24",
                "versionEndExcluding": "10.0.26100.7392",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_11_25h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "8EA08CDD-D682-403D-8B50-879EB4D88C67",
                "versionEndExcluding": "10.0.26200.7392",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x64:*",
                "matchCriteriaId": "2127D10C-B6F3-4C1D-B9AA-5D78513CC996",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x86:*",
                "matchCriteriaId": "AB425562-C0A0-452E-AABE-F70522F15E1A",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*",
                "matchCriteriaId": "AF07A81D-12E5-4B1D-BFF9-C8D08C32FF4F",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:*",
                "matchCriteriaId": "A7DF96F8-BA6A-4780-9CA3-F719B3F81074",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*",
                "matchCriteriaId": "DB18C4CE-5917-401E-ACF7-2747084FD36E",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "992FE0C2-27E6-4D04-8200-7831DE13C58E",
                "versionEndExcluding": "10.0.14393.8688",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "A20DBDB1-D0DE-4800-8BEA-35EE5D53659D",
                "versionEndExcluding": "10.0.17763.8146",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "C552FBB4-8F98-492E-A084-AF14C9514A67",
                "versionEndExcluding": "10.0.20348.4467",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2022_23h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "E9CE4A36-DA42-40CC-8724-E30A22CA84B6",
                "versionEndExcluding": "10.0.25398.2025",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "35BBEADA-D039-479B-A1BA-B2A7E37235BE",
                "versionEndExcluding": "10.0.26100.7392",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally."
      },
      {
        "lang": "es",
        "value": "Desbordamiento de búfer basado en montículo en el controlador del sistema de archivos de registro común de Windows permite a un atacante autorizado elevar privilegios localmente."
      }
    ],
    "id": "CVE-2025-62470",
    "lastModified": "2026-09-30T20:10:00.247",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "LOCAL",
            "availabilityImpact": "HIGH",
            "baseScore": 7.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "LOW",
            "scope": "UNCHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 1.8,
          "impactScore": 5.9,
          "source": "secure@microsoft.com",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2025-62470",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2025-12-10T04:56:22.423444Z",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2025-12-09T18:15:59.227",
    "references": [
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Vendor Advisory"
        ],
        "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-62470"
      }
    ],
    "sourceIdentifier": "secure@microsoft.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-122"
          }
        ],
        "source": "secure@microsoft.com",
        "type": "Secondary"
      }
    ]
  }
}
—
Vendor
vendor
NVDMicrosoft
receipt
Source
NVD
Its words
Microsoft
Read by
field:cve.affected[].affectedData[].vendor
Said since
2026-10-02 12:00 UTC
Last answered
2026-10-04 18:16 UTC
Original
open at the source
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 1607",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.14393.8688",
                "status": "affected",
                "version": "10.0.14393.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 1809",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.17763.8146",
                "status": "affected",
                "version": "10.0.17763.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "ARM64-based Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 21H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.19044.6691",
                "status": "affected",
                "version": "10.0.19044.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "ARM64-based Systems",
              "x64-based Systems"
            ],
            "product": "Windows 10 Version 22H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.19045.6691",
                "status": "affected",
                "version": "10.0.19045.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "ARM64-based Systems"
            ],
            "product": "Windows 11 version 22H3",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.22631.6345",
                "status": "affected",
                "version": "10.0.22631.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows 11 Version 23H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.22631.6345",
                "status": "affected",
                "version": "10.0.22631.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "ARM64-based Systems",
              "x64-based Systems"
            ],
            "product": "Windows 11 Version 24H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26100.7462",
                "status": "affected",
                "version": "10.0.26100.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "product": "Windows 11 Version 25H2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26200.7462",
                "status": "affected",
                "version": "10.0.26200.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 R2 Service Pack 1",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.1.7601.28064",
                "status": "affected",
                "version": "6.1.7601.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.1.7601.28064",
                "status": "affected",
                "version": "6.1.7601.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 Service Pack 2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.0.6003.23666",
                "status": "affected",
                "version": "6.0.6003.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "32-bit Systems",
              "x64-based Systems"
            ],
            "product": "Windows Server 2008 Service Pack 2 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.0.6003.23666",
                "status": "affected",
                "version": "6.0.6003.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.2.9200.25815",
                "status": "affected",
                "version": "6.2.9200.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.2.9200.25815",
                "status": "affected",
                "version": "6.2.9200.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012 R2",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.3.9600.22920",
                "status": "affected",
                "version": "6.3.9600.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2012 R2 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "6.3.9600.22920",
                "status": "affected",
                "version": "6.3.9600.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2016",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.14393.8688",
                "status": "affected",
                "version": "10.0.14393.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2016 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.14393.8688",
                "status": "affected",
                "version": "10.0.14393.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2019",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.17763.8146",
                "status": "affected",
                "version": "10.0.17763.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2019 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.17763.8146",
                "status": "affected",
                "version": "10.0.17763.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2022",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.20348.4529",
                "status": "affected",
                "version": "10.0.20348.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2022, 23H2 Edition (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.25398.2025",
                "status": "affected",
                "version": "10.0.25398.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2025",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26100.7462",
                "status": "affected",
                "version": "10.0.26100.0",
                "versionType": "custom"
              }
            ]
          },
          {
            "platforms": [
              "x64-based Systems"
            ],
            "product": "Windows Server 2025 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "lessThan": "10.0.26100.7462",
                "status": "affected",
                "version": "10.0.26100.0",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "secure@microsoft.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x64:*",
                "matchCriteriaId": "B1A4A63C-AA10-4A4B-8FD6-0519D1F7DFE9",
                "versionEndExcluding": "10.0.14393.8688",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:*",
                "matchCriteriaId": "BCB3A273-FB6E-43DC-A247-363179C2400C",
                "versionEndExcluding": "10.0.14393.8688",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*",
                "matchCriteriaId": "5CEB496A-8AF3-458D-B466-16204E535DE0",
                "versionEndExcluding": "10.0.17763.8146",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:*",
                "matchCriteriaId": "C99D0580-E443-4440-A211-19BA3C2C4AFA",
                "versionEndExcluding": "10.0.17763.8146",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "9D04167A-522C-433E-8CEB-C1D8A02C23D8",
                "versionEndExcluding": "10.0.19044.6691",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "A86D6CDC-55E5-4817-A6CE-4CE41921FB79",
                "versionEndExcluding": "10.0.19045.6691",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "6DCE32D0-A9E0-4029-AB35-5E202A42AF01",
                "versionEndExcluding": "10.0.22631.6345",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "8DCD2A6E-7CD0-4FCC-AC11-5A1470776C24",
                "versionEndExcluding": "10.0.26100.7392",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_11_25h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "8EA08CDD-D682-403D-8B50-879EB4D88C67",
                "versionEndExcluding": "10.0.26200.7392",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x64:*",
                "matchCriteriaId": "2127D10C-B6F3-4C1D-B9AA-5D78513CC996",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x86:*",
                "matchCriteriaId": "AB425562-C0A0-452E-AABE-F70522F15E1A",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*",
                "matchCriteriaId": "AF07A81D-12E5-4B1D-BFF9-C8D08C32FF4F",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:*",
                "matchCriteriaId": "A7DF96F8-BA6A-4780-9CA3-F719B3F81074",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*",
                "matchCriteriaId": "DB18C4CE-5917-401E-ACF7-2747084FD36E",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "992FE0C2-27E6-4D04-8200-7831DE13C58E",
                "versionEndExcluding": "10.0.14393.8688",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "A20DBDB1-D0DE-4800-8BEA-35EE5D53659D",
                "versionEndExcluding": "10.0.17763.8146",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "C552FBB4-8F98-492E-A084-AF14C9514A67",
                "versionEndExcluding": "10.0.20348.4467",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2022_23h2:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "E9CE4A36-DA42-40CC-8724-E30A22CA84B6",
                "versionEndExcluding": "10.0.25398.2025",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "35BBEADA-D039-479B-A1BA-B2A7E37235BE",
                "versionEndExcluding": "10.0.26100.7392",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally."
      },
      {
        "lang": "es",
        "value": "Desbordamiento de búfer basado en montículo en el controlador del sistema de archivos de registro común de Windows permite a un atacante autorizado elevar privilegios localmente."
      }
    ],
    "id": "CVE-2025-62470",
    "lastModified": "2026-09-30T20:10:00.247",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "LOCAL",
            "availabilityImpact": "HIGH",
            "baseScore": 7.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "LOW",
            "scope": "UNCHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 1.8,
          "impactScore": 5.9,
          "source": "secure@microsoft.com",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2025-62470",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2025-12-10T04:56:22.423444Z",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2025-12-09T18:15:59.227",
    "references": [
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Vendor Advisory"
        ],
        "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-62470"
      }
    ],
    "sourceIdentifier": "secure@microsoft.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-122"
          }
        ],
        "source": "secure@microsoft.com",
        "type": "Secondary"
      }
    ]
  }
}
—

vulnerability

Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
zetlyn/cve-nvd · 2025-12-09
cvss 7.8 product Windows 10 Version 1607 status Analyzed vendor Microsoft source