Home Microsoft CVE-2025-21370
Back to Microsoft

CVE-2025-21370

Target: Windows - Virtualization-Based Security (VBS) Enclave

Microsoft CVSS 7.8 Updated March 10, 2026
Threat Level HIGH

Executive Risk Summary

"An elevation of privilege vulnerability exists in Windows Virtualization-Based Security (VBS) Enclave, which could allow an attacker to gain elevated privileges. This vulnerability requires an attacker to have existing access to the system and the ability to execute code on the VBS Enclave."

Operational Audit Arsenal

Target Type Windows Component
Target Asset Virtualization-Based Security (VBS) Enclave
Standard Path Windows Kernel
PowerShell
# 🛠️ Senior Engineer Universal Audit
# Target: Virtualization-Based Security (VBS) Enclave (Windows Component)
$Target = "Virtualization-Based Security (VBS) Enclave"
$SearchPaths = @("$env:windir\System32", "$env:ProgramFiles", "${env:ProgramFiles(x86)}")

Get-ChildItem -Path $SearchPaths -Filter $Target -Recurse -ErrorAction SilentlyContinue | 
Select-Object FullName, @{Name="Version";Expression={$_.VersionInfo.ProductVersion}}

Patch Impact Forecast

Reboot Required Required
Service Disruption

Low to Moderate

Internal Work Notes

Apply the latest security updates from Microsoft to mitigate this vulnerability, and consider implementing additional security controls to restrict access to the VBS Enclave.

Intelligence Sources

Scope of Impact

Windows 11 22H2 Windows 11 23H2 Windows 11 24H2

Original NVD Description

"Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability"

Data compiled from NVD, MSRC, and CISA KEV Catalog. Intelligence synthesized via AI. Scripts provided for diagnostic purposes under MIT License.