UNKNOWNKNOWN EXPLOITED
CVE-2025-24054
Microsoft Windows NTLM Hash Disclosure Spoofing Vulnerability
Summary
Microsoft Windows NTLM contains an external control of file name or path vulnerability that allows an unauthorized attacker to perform spoofing over a network.
References
Includes data from the CISA Known Exploited Vulnerabilities catalog.
CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.