PT-2025-28516 · Microsoft · Windows
Guhe120
+1
·
Published
2025-07-08
·
Updated
2025-07-17
·
CVE-2025-47981
10
Critical
Base vector | Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
**Name of the Vulnerable Software and Affected Versions:**
Windows versions (affected versions not specified)
**Description:**
A critical vulnerability exists in the Windows SPNEGO Extended Negotiation (NEGOEX) security mechanism. This flaw is a heap-based buffer overflow that allows an unauthorized attacker to execute code remotely over a network. The vulnerability is considered 'wormable', meaning it has the potential to spread automatically across networks, similar to WannaCry and NotPetya. Successful exploitation grants attackers complete system control with SYSTEM privileges.
**Recommendations:**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
RCE
Heap Based Buffer Overflow
Weakness Enumeration
Related Identifiers
Affected Products
References · 40
- https://nvd.nist.gov/vuln/detail/CVE-2025-47981 · Security Note
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-47981 · Security Note
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-47981 · Vendor Advisory
- https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-47981 · Vendor Advisory
- https://bdu.fstec.ru/vul/2025-08224 · Security Note
- https://twitter.com/grok/status/1944011636089794850 · Twitter Post
- https://twitter.com/dCypherIO/status/1942931869957316822 · Twitter Post
- https://twitter.com/RedTeamTimes/status/1944340866232877074 · Twitter Post
- https://t.me/c/1110203459/1561 · Telegram Post
- https://twitter.com/windowsforum/status/1942917703670366574 · Twitter Post
- https://twitter.com/Daniel_Lackner_/status/1942941368139010194 · Twitter Post
- https://reddit.com/r/sysadmin/comments/1lvhpri/cve202547981 · Reddit Post
- https://twitter.com/PoseidonTPA/status/1942916703572357441 · Twitter Post
- https://twitter.com/evanderburg/status/1942909916425113696 · Twitter Post
- https://twitter.com/dailytechonx/status/1943063866428051612 · Twitter Post