CVE-2025-48813 Details
Description
Use of a key past its expiration date in Virtual Secure Mode allows an authorized attacker to perform spoofing locally.
A spoofing vulnerability has been identified in Virtual Secure Mode, allowing an authorized attacker to use a key beyond its expiration date to perform spoofing locally. This issue affects multiple Microsoft products, including Windows Server 2025, Windows 11 (various versions), Windows Server 2022, Windows Server 2019, and Windows 10 (various versions).
Users can apply the security update KB5066835 for Windows Server 2025, Windows 11 Version 24H2 (x64 and ARM64), and Windows 10 Version 22H2 (x64, ARM64, and 32-bit). For Windows Server 2022, 23H2 Edition (Server Core installation), the security update KB5066780 is available. Windows Server 2019 users can apply the security update KB5066586. For Windows 10 Version 21H2, the security update KB5066791 is recommended. Users can download these security updates through the Microsoft Update Catalog.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Oct 18, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-48813 | [email protected] | Vendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-324 | Use of a Key Past its Expiration Date | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| microsoft windows 10 1809 | < 10.0.17763.7919 |
CPE
Remediation
| |
| microsoft windows 10 21h2 | < 10.0.19044.6456 |
CPE
Remediation
| |
| microsoft windows 10 22h2 | < 10.0.19045.6456 |
CPE
Remediation
| |
| microsoft windows 11 22h2 | < 10.0.22621.6060 |
CPE
Remediation
| |
| microsoft windows 11 23h2 | <= 10.0.22631.6060 |
CPE
Remediation
| |
| microsoft windows 11 24h2 | < 10.0.26100.6899 |
CPE
Remediation
| |
| microsoft windows 11 25h2 | < 10.0.26200.6899 |
CPE
Remediation
| |
| microsoft windows server 2019 | < 10.0.17763.7919 |
CPE
Remediation
| |
| microsoft windows server 2022 | < 10.0.20348.4294 |
CPE
Remediation
| |
| microsoft windows server 2022 23h2 | < 10.0.25398.1913 |
CPE
Remediation
| |
| microsoft windows server 2025 | <= 10.0.26100.6899 |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Oct 23, 2025 | Initial Analysis | [email protected] |
| Oct 14, 2025 | New CVE Received | [email protected] |