{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-05-13T07:14:26.514","vulnerabilities":[{"cve":{"id":"CVE-2025-21195","sourceIdentifier":"secure@microsoft.com","published":"2025-07-08T17:15:33.037","lastModified":"2025-07-22T17:50:17.987","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"Improper link resolution before file access ('link following') in Service Fabric allows an authorized attacker to elevate privileges locally."},{"lang":"es","value":"La resolución de enlace incorrecta antes del acceso al archivo ('seguimiento de enlace') en Service Fabric permite que un atacante autorizado eleve privilegios localmente."}],"metrics":{"cvssMetricV31":[{"source":"secure@microsoft.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:H","baseScore":6.0,"baseSeverity":"MEDIUM","attackVector":"LOCAL","attackComplexity":"HIGH","privilegesRequired":"LOW","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":0.8,"impactScore":5.2}]},"weaknesses":[{"source":"secure@microsoft.com","type":"Secondary","description":[{"lang":"en","value":"CWE-59"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:azure_service_fabric:*:*:*:*:*:*:*:*","versionEndExcluding":"10.1","matchCriteriaId":"44677B4A-2D65-48C7-A6CB-35F147D0EFBB"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:azure_service_fabric:10.1:-:*:*:*:*:*:*","matchCriteriaId":"9DAE72AC-1797-4E7D-BFD0-9AFA8FE01AB4"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:azure_service_fabric:10.1:cumulative_update_2:*:*:*:*:*:*","matchCriteriaId":"BCF2C1B7-A5F6-46E2-BFE2-6A30A2ECF353"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:azure_service_fabric:10.1:cumulative_update_3:*:*:*:*:*:*","matchCriteriaId":"D0E803E4-9B58-46AF-9056-D2AF57B6FA19"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:azure_service_fabric:10.1:cumulative_update_4:*:*:*:*:*:*","matchCriteriaId":"72D8CBE0-BDE7-4FF6-B49E-D91BA3260FA3"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:azure_service_fabric:10.1:cumulative_update_5:*:*:*:*:*:*","matchCriteriaId":"AA3B4BB0-2AAC-4EA9-BF39-9A9361368C5F"},{"vulnerable":true,"criteria":"cpe:2.3:a:microsoft:azure_service_fabric:10.1:cumulative_update_6:*:*:*:*:*:*","matchCriteriaId":"74756012-AE68-4881-AC27-4089995ABF9A"}]}]}],"references":[{"url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21195","source":"secure@microsoft.com","tags":["Vendor Advisory"]}]}}]}