CVE-2025-26644
08.04.2025, 18:15
Automated recognition mechanism with inadequate detection or handling of adversarial input perturbations in Windows Hello allows an unauthorized attacker to perform spoofing locally.Enginsight
Vendor | Product | Version |
---|---|---|
microsoft | windows_10_1809 | 𝑥 < 10.0.17763.7136 |
microsoft | windows_10_1809 | 𝑥 < 10.0.17763.7136 |
microsoft | windows_10_21h2 | 𝑥 < 10.0.19044.5737 |
microsoft | windows_10_22h2 | 𝑥 < 10.0.19045.5737 |
microsoft | windows_11_22h2 | 𝑥 < 10.0.22621.5189 |
microsoft | windows_11_23h2 | 𝑥 < 10.0.22631.5189 |
microsoft | windows_11_24h2 | 𝑥 < 10.0.26100.3775 |
microsoft | windows_server_2019 | 𝑥 < 10.0.17763.7136 |
microsoft | windows_server_2025 | 𝑥 < 10.0.26100.3775 |
𝑥
= Vulnerable software versions