← back
CVE-2025-24054

NTLM Hash Disclosure Spoofing Vulnerability

CVSS 6.5 MEDIUMEPSS 59.0%● KEVCWE-73
In short

An attacker can trick Windows NTLM authentication into using a file path they control, allowing them to impersonate legitimate users or systems on a network without proper authorization.

Technical detail

CWE-73 (external control of file name or path) in Windows NTLM enables network-based spoofing attacks where an attacker manipulates file path parameters to redirect authentication attempts. The vulnerability requires network access but no authentication pre-conditions, resulting in identity spoofing with medium severity (CVSS 6.5).

Summary generated and translated by AI from the official description.
External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →