CVE-2025-24054

⚠ KEVEPSS 8.0%

Microsoft Windows NTLM Hash Disclosure Spoofing Vulnerability

Added to CISA KEV: 4/17/2025

Description

Microsoft Windows NTLM contains an external control of file name or path vulnerability that allows an unauthorized attacker to perform spoofing over a network.

Affected packages (0)

No package mapping in OSV.