PT-2025-1168 · Microsoft · Windows

Published

2025-01-14

·

Updated

2025-01-24

·

CVE-2025-21246

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
The Windows Telephony Service is affected by a remote code execution issue, which can be exploited by attackers to execute arbitrary code and impact the system. This issue is critical and can have significant consequences if exploited. The vulnerable software is Windows, but no specific versions are mentioned. An exploit for this issue may be available, and users can find more information on how to protect against this issue at https://t.co/Ud0qF120qY. It is essential for users to take protective measures to secure their systems against this threat. #WindowsTelephonyService #RemoteCodeExecution #WindowsVulnerability #CyberSecurity #Exploit #Windows #TelephonyService

Fix

RCE

Out of bounds Read

Heap Based Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-00450
CVE-2025-21246

Affected Products

Windows