HIGH

CVE-2025-21391

Microsoft Windows 10 1507 2025-02-11 CVSS v3.1
CVSS
7.1
KEV

Description

Windows Storage Elevation of Privilege Vulnerability

Summary dbcve.org

This is a Windows Elevation of Privilege vulnerability affecting the Windows Storage component. The vulnerability allows an authenticated attacker to elevate privileges on the affected system. Based on the CVSS score of 7.1 (High), it likely requires some user interaction or local access but does not necessarily require admin privileges to exploit.

Mitigation

Apply the security updates provided by Microsoft in the February 2025 security patch release for affected Windows versions.

Patch Commit

Weakness (CWE)

CWE-59 Link Following (Symlink)

EPSS Score

2.3%
Probability of exploitation in next 30 days
82.4th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE