Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spoofing over a network.
Conclusion & alert: CVE-2025-24071 is rated High Exploit Risk (76.2/100): CVSS Medium severity, with high exploitation likelihood (EPSS 74.07%, 99th percentile). Core evidence: 3 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
| EDB-ID | Source | Kind | Published | Link |
|---|---|---|---|---|
| 52325 | exploit_db | edb | 2025-06-13 | Exploit-DB ↗ |
| 52310 | exploit_db | edb | 2025-05-29 | Exploit-DB ↗ |
| — | nvd_ref | exploit_tag | Exploit-DB ↗ |
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-05-30 | 73.52% | 74.07% | +0.55% |
| 2 | 2026-04-30 | 73.89% | 73.52% | -0.37% |
| 3 | 2026-04-21 | — | 73.89% | — |
Full EPSS history (37 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 6.5 | 3.1 | MEDIUM |
|
2.8 | 3.6 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| microsoft | windows_10_1507 | < 10.0.10240.20947 | cpe:2.3:o:microsoft:windows_10_1507:*:*:*:*:*:*:x64:* |
| microsoft | windows_10_1507 | < 10.0.10240.20947 | cpe:2.3:o:microsoft:windows_10_1507:*:*:*:*:*:*:x86:* |
| microsoft | windows_10_1607 | < 10.0.14393.7876 | cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x64:* |
| microsoft | windows_10_1607 | < 10.0.14393.7876 | cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:* |
| microsoft | windows_10_1809 | < 10.0.17763.7009 | cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:* |
| microsoft | windows_10_1809 | < 10.0.17763.7009 | cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:* |
| microsoft | windows_11_23h2 | < 10.0.22631.5039 | cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:*:* |
| microsoft | windows_11_24h2 | < 10.0.26100.3476 | cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:arm64:* |
| microsoft | windows_11_24h2 | < 10.0.26100.3476 | cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:x64:* |
| microsoft | windows_server_2012 | r2 | cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:* |
| microsoft | windows_server_2016 | < 10.0.14393.7876 | cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:* |
| microsoft | windows_server_2019 | < 10.0.17763.7009 | cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:* |
| microsoft | windows_server_2022 | < 10.0.20348.3328 | cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:* |
| microsoft | windows_server_2022_23h2 | < 10.0.25398.1486 | cpe:2.3:o:microsoft:windows_server_2022_23h2:*:*:*:*:*:*:x64:* |
| microsoft | windows_server_2025 | < 10.0.26100.3476 | cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:x64:* |
| URL | Tags |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-24071 | Vendor Advisory |
| https://www.vicarius.io/vsociety/posts/cve-2025-24071-spoofing-vulnerability-in-microsoft-windows-file-explorer-detection-scrip | Exploit Third Party Advisory |
| https://www.vicarius.io/vsociety/posts/cve-2025-24071-spoofing-vulnerability-in-microsoft-windows-file-explorer-mitigation-script | Mitigation Third Party Advisory |