CVE-2026-25166

Publication date

2026-03-10 17:04:48

Family

microsoft

State

PUBLISHED

Description

Deserialization of untrusted data in Windows System Image Manager allows an authorized attacker to execute code locally.