CVE-2025-61973
Severity CVSS v4.0:
Pending analysis
Type:
CWE-284
Improper Access Control
Publication date:
15/01/2026
Last modified:
16/01/2026
Description
A local privilege escalation vulnerability exists during the installation of Epic Games Store via the Microsoft Store. A low-privilege user can replace a DLL file during the installation process, which may result in unintended elevation of privileges.
Impact
Base Score 3.x
8.80
Severity 3.x
HIGH



