MEDIUM

CVE-2025-24054

Microsoft Windows 10 1507 2025-03-11 CVSS v3.1
CVSS
5.4
KEV

Description

External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.

Summary dbcve.org

This is a Windows NTLM vulnerability where an attacker can externally control file names or paths to perform spoofing attacks over a network. The vulnerability allows an unauthorized attacker to manipulate NTLM authentication flows through path traversal or file name injection, potentially impersonating legitimate users or services.

Mitigation

Apply Microsoft security updates for this vulnerability and implement NTLM authentication restrictions (e.g., via Group Policy or registry settings) to block or limit NTLM authentication for vulnerable services.

Proof of Concept

Weakness (CWE)

CWE-73

EPSS Score

58.91%
Probability of exploitation in next 30 days
99.1th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE