CVE-2025-49672 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 23H2 Routing/Remote Access Service heap-based overflow
A vulnerability was found in Microsoft Windows. It has been declared as critical. This vulnerability affects unknown code of the component Routing/Remote Access Service. The manipulation leads to heap-based buffer overflow.
This vulnerability was named CVE-2025-49672. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.