VDB

CVE-2025-21180

CVE-2025-21180 PUBLISHED CVSS 8.699999809265137 HIGH

Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Microsoft Windows Server, Microsoft Windows Server 2012, Microsoft Windows Server 2012 R2, Microsoft Windows 10, Microsoft Windows Server 2016, Microsoft Windows Server 2019, Microsoft Windows, Microsoft Windows Server 2022 und Microsoft Windows 11 ausnutzen, um beliebigen Programmcode auszuführen, seine Rechte zu erweitern, zu spoofen, Sicherheitsmaßnahmen zu umgehen, Informationen offenzulegen oder einen Denial of Service auszulösen .

EPSS 0.93% · 57.9th percentile

Risk Scores

CVSS 4.0
8.699999809265137
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
EPSS Score
0.93%
57.9th percentile

Affected Products

VendorProductVersions
MicrosoftMicrosoft Windows Server 2022 <10.0.20348.3270
HitachiHitachi Virtual Storage Platform
MicrosoftMicrosoft Windows Server 2012 R2 <6.3.9600.22470
MicrosoftMicrosoft Windows Server 2012 <6.2.9200.25368
MicrosoftMicrosoft Windows Server 2019 <10.0.17763.7009
MicrosoftMicrosoft Windows 10 <10.0.10240.20947
MicrosoftMicrosoft Windows Server 2016 <10.0.14393.7876

Timeline

  • Mar 11, 2025 Coalition ESS Score
  • Mar 11, 2025 CVE Published
  • Mar 12, 2025 EPSS Score
  • Mar 12, 2025 Coalition ESS Score
  • Mar 13, 2025 Coalition ESS Score
  • Mar 24, 2025 Coalition ESS Score
  • Mar 26, 2025 EPSS Score
  • Apr 8, 2025 EPSS Score
  • Apr 21, 2025 PoC Published
  • Apr 22, 2025 EPSS Score
  • May 6, 2025 EPSS Score
  • May 13, 2025 PoC Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›