CVE-2025-58074

A privilege escalation vulnerability exists during the installation of Norton Secure VPN via the Microsoft Store. A low-privilege user can replace files during the installation process, which may result in deletion of arbitrary files that can lead to elevation of privileges.
Configurations

No configuration.

History

29 May 2026, 14:16

Type Values Removed Values Added
References
  • () https://support.norton.com/sp/en/me/home/current/solutions/v20250301180004520 -

28 May 2026, 17:16

Type Values Removed Values Added
References
  • {'url': 'https://talosintelligence.com/vulnerability_reports/TALOS-2025-2276', 'source': 'talos-cna@cisco.com'}
  • () https://www.gendigital.com/us/en/contact-us/security-advisories/ -

04 May 2026, 15:16

Type Values Removed Values Added
References
  • () https://www.talosintelligence.com/vulnerability_reports/TALOS-2025-2276 -

04 May 2026, 14:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-04 14:16

Updated : 2026-05-29 14:16


NVD link : CVE-2025-58074

Mitre link : CVE-2025-58074

CVE.ORG link : CVE-2025-58074


JSON object : View

Products Affected

No product.

CWE
CWE-1386

Insecure Operation on Windows Junction / Mount Point