Recent reports from Microsoft indicate that its August 2025 security updates are causing unexpected User Account Control (UAC) prompts and installation failures for non-admin users across all supported Windows platforms. The issue stems from a security update that addresses a Windows Installer privilege escalation vulnerability, which could potentially allow authenticated attackers to gain higher SYSTEM-level privileges.
Expanded UAC Prompt Requirements
To mitigate this vulnerability, Microsoft has introduced new UAC prompts when administrator credentials are required in additional scenarios. These situations include running MSI repair commands such as
The platforms affected by these modifications include Windows 11 versions 24H2, 23H2, and 22H2, Windows 10 versions 22H2, 21H2, 1809, Enterprise LTSC 2019, LTSC 2016, 1607, Enterprise 2015 LTSB, along with server releases like Windows Server 2025, 2022, 2019, 2016, 2012 R2, 2012, and version 1809.
Administrative Solutions and Support Paths
Affected users are experiencing application failures, such as the Office Professional Plus 2010 configuration failing with Error 1730 if an MSI repair is started without a direct user interface. While Microsoft is developing a patch to allow IT administrators to permit certain applications to conduct MSI repairs without necessitating UAC prompts, this update has yet to be released.
In the interim, Microsoft advises users to initiate MSI applications with elevated permissions by right-clicking the app and selecting 'Run as administrator'. For organizations unable to adopt this workaround, contacting Microsoft’s business support for guidance on modifying a Group Policy is suggested as a viable temporary solution.
Apart from the UAC prompt issues, Microsoft has acknowledged various other problems associated with the August 2025 updates, including lag and stutter issues with NDI streaming software and reports concerning drive failures or data corruption influencing both SSDs and HDDs. These systemic updates have highlighted the challenges of balancing increased security measures with maintaining an unimpeded user experience.



