CVE-2025-65117

The vulnerability, if exploited, could allow an authenticated miscreant 
(Process Optimization Designer User) to embed OLE objects into graphics,
 and escalate their privileges to the identity of a victim user who 
subsequently interacts with the graphical elements.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.4 HIGH
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:N
icscertCNA
7.4 HIGH
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:N