HIGH
CVE-2025-21391
CVSS
7.1
KEV
Description
Windows Storage Elevation of Privilege Vulnerability
Summary dbcve.org
This is a Windows Elevation of Privilege vulnerability affecting the Windows Storage component. The vulnerability allows an authenticated attacker to elevate privileges on the affected system. Based on the CVSS score of 7.1 (High), it likely requires some user interaction or local access but does not necessarily require admin privileges to exploit.
Mitigation
Apply the security updates provided by Microsoft in the February 2025 security patch release for affected Windows versions.
Weakness (CWE)
CWE-59
Link Following (Symlink)
EPSS Score
2.3%
Probability of exploitation in next 30 days
82.4th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.