PT-2025-28631 · Microsoft · Windows Storage +1
Ron Ben Yizhak
+1
·
Published
2025-07-08
·
Updated
2025-08-11
·
CVE-2025-49760
CVSS v2.0
4.0
4.0
Medium
Base vector | Vector | AV:N/AC:L/Au:S/C:P/I:N/A:N |
**Name of the Vulnerable Software and Affected Versions:**
Windows versions (affected versions not specified)
**Description:**
A spoofing vulnerability exists in Windows Storage due to improper external control of a file name or path. This allows an authorized attacker to perform spoofing attacks over a network. The vulnerability affects the core RPC system, potentially enabling attackers to impersonate trusted services, including Windows Defender. This could lead to domain privilege escalation through EPM poisoning.
**Recommendations:**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
LPE
Weakness Enumeration
Related Identifiers
BDU:2025-08307
CVE-2025-49760
Affected Products
Windows
Windows Storage
References · 14
- https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-49760 · Vendor Advisory
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-49760 · Security Note
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-49760 · Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2025-49760 · Security Note
- https://bdu.fstec.ru/vul/2025-08307 · Security Note
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-47973 · Vendor Advisory
- https://twitter.com/threatlight/status/1954531449706606895 · Twitter Post
- https://reddit.com/r/SecOpsDaily/comments/1mmjcoa/researchers_detail_windows_epm_poisoning_exploit · Reddit Post
- https://t.me/thehackernews/7316 · Telegram Post
- https://twitter.com/sctocs25/status/1954650645249802280 · Twitter Post
- https://twitter.com/TheHackersNews/status/1954521693919068164 · Twitter Post
- https://twitter.com/CVEnew/status/1942958448854831450 · Twitter Post
- https://reddit.com/r/CVEWatch/comments/1mn8xnr/top_10_trending_cves_11082025 · Reddit Post
- https://twitter.com/IT_news_for_all/status/1954521791864443028 · Twitter Post