Security Advisory

CVE-2025-55320

6.8
MEDIUM

Vulnerability Description

Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Configuration Manager allows an authorized attacker to elevate privileges over an adjacent network.
Published Date October 14, 2025
Official Source NIST NVD Advisory