Описание
External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2025-24054
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-24054
- https://www.vicarius.io/vsociety/posts/cve-2025-24054-spoofing-vulnerability-in-windows-ntlm-by-microsoft-detection-script
- https://www.vicarius.io/vsociety/posts/cve-2025-24054-spoofing-vulnerability-in-windows-ntlm-by-microsoft-mitigation-script
- http://seclists.org/fulldisclosure/2025/Apr/28
Связанные уязвимости
CVSS3: 6.5
nvd
3 месяца назад
External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
CVSS3: 6.5
fstec
3 месяца назад
Уязвимость реализации протокола NTLM операционной системы Windows, позволяющая нарушителю выполнить произвольный код