CVE-2025-23385
 
Severity Score
7.8
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
Track*
*SSVC
Descriptions
In JetBrains ReSharper before 2024.3.4, 2024.2.8, and 2024.1.7, Rider before 2024.3.4, 2024.2.8, and 2024.1.7, dotTrace before 2024.3.4, 2024.2.8, and 2024.1.7, ETW Host Service before 16.43, Local Privilege Escalation via the ETW Host Service was possible
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:Track*
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2025-01-15 CVE Reserved
- 2025-01-28 CVE Published
- 2025-01-28 CVE Updated
- 2025-06-27 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-114: Process Control
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
https://www.jetbrains.com/privacy-security/issues-fixed |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
JetBrains Search vendor "JetBrains" | ReSharper Search vendor "JetBrains" for product "ReSharper" | >= 2024.3.0 < 2024.3.4 Search vendor "JetBrains" for product "ReSharper" and version " >= 2024.3.0 < 2024.3.4" | en |
Affected
| ||||||
JetBrains Search vendor "JetBrains" | ReSharper Search vendor "JetBrains" for product "ReSharper" | >= 2024.2.0 < 2024.2.8 Search vendor "JetBrains" for product "ReSharper" and version " >= 2024.2.0 < 2024.2.8" | en |
Affected
| ||||||
JetBrains Search vendor "JetBrains" | ReSharper Search vendor "JetBrains" for product "ReSharper" | < 2024.1.7 Search vendor "JetBrains" for product "ReSharper" and version " < 2024.1.7" | en |
Affected
| ||||||
JetBrains Search vendor "JetBrains" | Rider Search vendor "JetBrains" for product "Rider" | >= 2024.3.0 < 2024.3.4 Search vendor "JetBrains" for product "Rider" and version " >= 2024.3.0 < 2024.3.4" | en |
Affected
| ||||||
JetBrains Search vendor "JetBrains" | Rider Search vendor "JetBrains" for product "Rider" | >= 2024.2.0 < 2024.2.8 Search vendor "JetBrains" for product "Rider" and version " >= 2024.2.0 < 2024.2.8" | en |
Affected
| ||||||
JetBrains Search vendor "JetBrains" | Rider Search vendor "JetBrains" for product "Rider" | < 2024.1.7 Search vendor "JetBrains" for product "Rider" and version " < 2024.1.7" | en |
Affected
| ||||||
JetBrains Search vendor "JetBrains" | DotTrace Search vendor "JetBrains" for product "DotTrace" | >= 2024.3.0 < 2024.3.4 Search vendor "JetBrains" for product "DotTrace" and version " >= 2024.3.0 < 2024.3.4" | en |
Affected
| ||||||
JetBrains Search vendor "JetBrains" | DotTrace Search vendor "JetBrains" for product "DotTrace" | >= 2024.2.0 < 2024.2.8 Search vendor "JetBrains" for product "DotTrace" and version " >= 2024.2.0 < 2024.2.8" | en |
Affected
| ||||||
JetBrains Search vendor "JetBrains" | DotTrace Search vendor "JetBrains" for product "DotTrace" | < 2024.1.7 Search vendor "JetBrains" for product "DotTrace" and version " < 2024.1.7" | en |
Affected
| ||||||
JetBrains Search vendor "JetBrains" | ETW Host Service Search vendor "JetBrains" for product "ETW Host Service" | < 16.43 Search vendor "JetBrains" for product "ETW Host Service" and version " < 16.43" | en |
Affected
|