CVE-2025-24071

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Mar 11, 2025
Updated: Apr 3, 2025
CWE ID 200

Summary

CVE-2025-24071 is a vulnerability affecting Windows File Explorer where sensitive information can be exposed to unauthorized actors over a network. This issue permits spoofing attacks, allowing misrepresentation of file or system information, potentially leading to security breaches or unintended actions. Attackers can exploit this vulnerability by tricking users into opening a maliciously crafted file or visiting a specially designed website. The exposure of sensitive data increases the risk of data theft and unauthorized access, making it essential for organizations and individuals to apply the available patches promptly.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share