{"id":29825,"date":"2025-12-09T14:03:34","date_gmt":"2025-12-09T14:03:34","guid":{"rendered":"http:\/\/localhost\/?p=29825"},"modified":"2025-12-09T14:03:34","modified_gmt":"2025-12-09T14:03:34","slug":"windows-routing-and-remote-access-service-rras-remote-code-execution-vulnerability","status":"publish","type":"post","link":"https:\/\/zero.redgem.net\/?p=29825","title":{"rendered":"Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability_CVE-2025-64678"},"content":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;&#8221;,&#8221;description&#8221;:&#8221;&#8221;,&#8221;published&#8221;:&#8221;2025-12-09T17:56:07.648Z&#8221;,&#8221;modified&#8221;:&#8221;2025-12-09T17:56:07.648Z&#8221;,&#8221;type&#8221;:&#8221;cve&#8221;,&#8221;title&#8221;:&#8221;Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability&#8221;,&#8221;source&#8221;:&#8221;microsoft&#8221;,&#8221;references&#8221;:&#8221;https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2025-64678&#8243;,&#8221;id&#8221;:&#8221;CVE-2025-64678&#8243;,&#8221;bulletinFamily&#8221;:&#8221;&#8221;,&#8221;cwe&#8221;:[&#8220;CWE-122&#8243;],&#8221;cvelist&#8221;:null,&#8221;sourceData&#8221;:&#8221;Microsoft Windows 10 Version 1809 10.0.17763.0\\nMicrosoft Windows Server 2019 10.0.17763.0\\nMicrosoft Windows Server 2019 (Server Core installation) 10.0.17763.0\\nMicrosoft Windows Server 2022 10.0.20348.0\\nMicrosoft Windows 10 Version 21H2 10.0.19044.0\\nMicrosoft Windows 10 Version 22H2 10.0.19045.0\\nMicrosoft Windows Server 2025 (Server Core installation) 10.0.26100.0\\nMicrosoft Windows 11 Version 25H2 10.0.26200.0\\nMicrosoft Windows 11 version 22H3 10.0.22631.0\\nMicrosoft Windows 11 Version 23H2 10.0.22631.0\\nMicrosoft Windows Server 2022, 23H2 Edition (Server Core installation) 10.0.25398.0\\nMicrosoft Windows 11 Version 24H2 10.0.26100.0\\nMicrosoft Windows Server 2025 10.0.26100.0\\nMicrosoft Windows 10 Version 1607 10.0.14393.0\\nMicrosoft Windows Server 2016 10.0.14393.0\\nMicrosoft Windows Server 2016 (Server Core installation) 10.0.14393.0\\nMicrosoft Windows Server 2008 Service Pack 2 6.0.6003.0\\nMicrosoft Windows Server 2008 Service Pack 2 (Server Core installation) 6.0.6003.0\\nMicrosoft Windows Server 2008 R2 Service Pack 1 6.1.7601.0\\nMicrosoft Windows Server 2008 R2 Service Pack 1 (Server Core installation) 6.1.7601.0\\nMicrosoft Windows Server 2012 6.2.9200.0\\nMicrosoft Windows Server 2012 (Server Core installation) 6.2.9200.0\\nMicrosoft Windows Server 2012 R2 6.3.9600.0\\nMicrosoft Windows Server 2012 R2 (Server Core installation) 6.3.9600.0&#8243;,&#8221;sourceHref&#8221;:&#8221;&#8221;,&#8221;cvss&#8221;:{&#8220;score&#8221;:8.8,&#8221;severity&#8221;:&#8221;HIGH&#8221;,&#8221;vector&#8221;:&#8221;CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:U\/C:H\/I:H\/A:H\/E:U\/RL:O\/RC:C&#8221;,&#8221;version&#8221;:&#8221;3.1&#8243;},&#8221;cvss2&#8243;:{},&#8221;cvss3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;,&#8221;cvssV3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;}},&#8221;href&#8221;:&#8221;&#8221;,&#8221;category_name&#8221;:&#8221;CVE&#8221;,&#8221;post_link&#8221;:&#8221;&#8221;,&#8221;product&#8221;:&#8221;Windows 10 Version 1809&#8243;,&#8221;version&#8221;:&#8221;10.0.17763.0&#8243;,&#8221;vendor&#8221;:&#8221;Microsoft&#8221;,&#8221;ai_description&#8221;:&#8221;&#8221;,&#8221;ai_severity&#8221;:&#8221;&#8221;,&#8221;ai_vendor&#8221;:&#8221;&#8221;,&#8221;ai_product&#8221;:&#8221;&#8221;,&#8221;ai_version&#8221;:&#8221;&#8221;,&#8221;ai_score&#8221;:0}<\/p>\n","protected":false},"excerpt":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;&#8221;,&#8221;description&#8221;:&#8221;&#8221;,&#8221;published&#8221;:&#8221;2025-12-09T17:56:07.648Z&#8221;,&#8221;modified&#8221;:&#8221;2025-12-09T17:56:07.648Z&#8221;,&#8221;type&#8221;:&#8221;cve&#8221;,&#8221;title&#8221;:&#8221;Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability&#8221;,&#8221;source&#8221;:&#8221;microsoft&#8221;,&#8221;references&#8221;:&#8221;https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2025-64678&#8243;,&#8221;id&#8221;:&#8221;CVE-2025-64678&#8243;,&#8221;bulletinFamily&#8221;:&#8221;&#8221;,&#8221;cwe&#8221;:[&#8220;CWE-122&#8243;],&#8221;cvelist&#8221;:null,&#8221;sourceData&#8221;:&#8221;Microsoft Windows 10 Version 1809 10.0.17763.0\\nMicrosoft Windows Server 2019 10.0.17763.0\\nMicrosoft Windows Server 2019 (Server Core&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2],"tags":[6,8,41,12,15,13,7,11,5],"class_list":["post-29825","post","type-post","status-publish","format-standard","hentry","category-category_cve","tag-cve","tag-cvss","tag-cvss-88","tag-exploit","tag-high","tag-news","tag-security","tag-tapic","tag-vulnerability"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability_CVE-2025-64678 - zero redgem<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/zero.redgem.net\/?p=29825\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability_CVE-2025-64678 - zero redgem\" \/>\n<meta property=\"og:description\" content=\"{&#8220;lastseen&#8221;:&#8221;&#8221;,&#8221;description&#8221;:&#8221;&#8221;,&#8221;published&#8221;:&#8221;2025-12-09T17:56:07.648Z&#8221;,&#8221;modified&#8221;:&#8221;2025-12-09T17:56:07.648Z&#8221;,&#8221;type&#8221;:&#8221;cve&#8221;,&#8221;title&#8221;:&#8221;Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability&#8221;,&#8221;source&#8221;:&#8221;microsoft&#8221;,&#8221;references&#8221;:&#8221;https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2025-64678&#8243;,&#8221;id&#8221;:&#8221;CVE-2025-64678&#8243;,&#8221;bulletinFamily&#8221;:&#8221;&#8221;,&#8221;cwe&#8221;:[&#8220;CWE-122&#8243;],&#8221;cvelist&#8221;:null,&#8221;sourceData&#8221;:&#8221;Microsoft Windows 10 Version 1809 10.0.17763.0nMicrosoft Windows Server 2019 10.0.17763.0nMicrosoft Windows Server 2019 (Server Core...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/zero.redgem.net\/?p=29825\" \/>\n<meta property=\"og:site_name\" content=\"zero redgem\" \/>\n<meta property=\"article:published_time\" content=\"2025-12-09T14:03:34+00:00\" \/>\n<meta name=\"author\" content=\"invoker\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"invoker\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"1 minute\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=29825#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=29825\"},\"author\":{\"name\":\"invoker\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\"},\"headline\":\"Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability_CVE-2025-64678\",\"datePublished\":\"2025-12-09T14:03:34+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=29825\"},\"wordCount\":256,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"keywords\":[\"CVE\",\"CVSS\",\"CVSS-8.8\",\"exploit\",\"HIGH\",\"news\",\"Security\",\"tapic\",\"Vulnerability\"],\"articleSection\":[\"category_cve\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=29825#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=29825\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?p=29825\",\"name\":\"Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability_CVE-2025-64678 - zero redgem\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\"},\"datePublished\":\"2025-12-09T14:03:34+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=29825#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=29825\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=29825#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/zero.redgem.net\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability_CVE-2025-64678\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"name\":\"zero redgem\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/zero.redgem.net\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\",\"name\":\"zero redgem\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"\",\"contentUrl\":\"\",\"width\":191,\"height\":188,\"caption\":\"zero redgem\"},\"image\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\",\"name\":\"invoker\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"caption\":\"invoker\"},\"sameAs\":[\"https:\\\/\\\/zero.redgem.net\"],\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?author=1\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability_CVE-2025-64678 - zero redgem","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/zero.redgem.net\/?p=29825","og_locale":"en_US","og_type":"article","og_title":"Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability_CVE-2025-64678 - zero redgem","og_description":"{&#8220;lastseen&#8221;:&#8221;&#8221;,&#8221;description&#8221;:&#8221;&#8221;,&#8221;published&#8221;:&#8221;2025-12-09T17:56:07.648Z&#8221;,&#8221;modified&#8221;:&#8221;2025-12-09T17:56:07.648Z&#8221;,&#8221;type&#8221;:&#8221;cve&#8221;,&#8221;title&#8221;:&#8221;Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability&#8221;,&#8221;source&#8221;:&#8221;microsoft&#8221;,&#8221;references&#8221;:&#8221;https:\/\/msrc.microsoft.com\/update-guide\/vulnerability\/CVE-2025-64678&#8243;,&#8221;id&#8221;:&#8221;CVE-2025-64678&#8243;,&#8221;bulletinFamily&#8221;:&#8221;&#8221;,&#8221;cwe&#8221;:[&#8220;CWE-122&#8243;],&#8221;cvelist&#8221;:null,&#8221;sourceData&#8221;:&#8221;Microsoft Windows 10 Version 1809 10.0.17763.0nMicrosoft Windows Server 2019 10.0.17763.0nMicrosoft Windows Server 2019 (Server Core...","og_url":"https:\/\/zero.redgem.net\/?p=29825","og_site_name":"zero redgem","article_published_time":"2025-12-09T14:03:34+00:00","author":"invoker","twitter_card":"summary_large_image","twitter_misc":{"Written by":"invoker","Est. reading time":"1 minute"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/zero.redgem.net\/?p=29825#article","isPartOf":{"@id":"https:\/\/zero.redgem.net\/?p=29825"},"author":{"name":"invoker","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca"},"headline":"Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability_CVE-2025-64678","datePublished":"2025-12-09T14:03:34+00:00","mainEntityOfPage":{"@id":"https:\/\/zero.redgem.net\/?p=29825"},"wordCount":256,"commentCount":0,"publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"keywords":["CVE","CVSS","CVSS-8.8","exploit","HIGH","news","Security","tapic","Vulnerability"],"articleSection":["category_cve"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/zero.redgem.net\/?p=29825#respond"]}]},{"@type":"WebPage","@id":"https:\/\/zero.redgem.net\/?p=29825","url":"https:\/\/zero.redgem.net\/?p=29825","name":"Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability_CVE-2025-64678 - zero redgem","isPartOf":{"@id":"https:\/\/zero.redgem.net\/#website"},"datePublished":"2025-12-09T14:03:34+00:00","breadcrumb":{"@id":"https:\/\/zero.redgem.net\/?p=29825#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/zero.redgem.net\/?p=29825"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/zero.redgem.net\/?p=29825#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/zero.redgem.net\/"},{"@type":"ListItem","position":2,"name":"Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability_CVE-2025-64678"}]},{"@type":"WebSite","@id":"https:\/\/zero.redgem.net\/#website","url":"https:\/\/zero.redgem.net\/","name":"zero redgem","description":"","publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/zero.redgem.net\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/zero.redgem.net\/#organization","name":"zero redgem","url":"https:\/\/zero.redgem.net\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/","url":"","contentUrl":"","width":191,"height":188,"caption":"zero redgem"},"image":{"@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca","name":"invoker","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","caption":"invoker"},"sameAs":["https:\/\/zero.redgem.net"],"url":"https:\/\/zero.redgem.net\/?author=1"}]}},"_links":{"self":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/29825","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=29825"}],"version-history":[{"count":0,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/29825\/revisions"}],"wp:attachment":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=29825"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=29825"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=29825"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}