Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2025-24054

Description

External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.

POC

Reference

- https://www.vicarius.io/vsociety/posts/cve-2025-24054-spoofing-vulnerability-in-windows-ntlm-by-microsoft-detection-script

- https://www.vicarius.io/vsociety/posts/cve-2025-24054-spoofing-vulnerability-in-windows-ntlm-by-microsoft-mitigation-script

Github

- https://github.com/0x6rss/CVE-2025-24071_PoC

- https://github.com/0xAtef/0xAtef.github.io

- https://github.com/ARPSyndicate/cve-scores

- https://github.com/Ash1996x/CVE-2025-50154-Aggressor-Script

- https://github.com/Marcejr117/CVE-2025-24071_PoC

- https://github.com/PuddinCat/GithubRepoSpider

- https://github.com/Royall-Researchers/CVE-2025-24071

- https://github.com/S4mma3l/CVE-2025-24054

- https://github.com/Yuri08loveElaina/CVE-2025-24054_POC

- https://github.com/basekilll/CVE-2025-24054_PoC

- https://github.com/defronixpro/Defronix-Cybersecurity-Roadmap

- https://github.com/francescolonardo/pentest-machine-writeups

- https://github.com/helidem/CVE-2025-24054_CVE-2025-24071-PoC

- https://github.com/leonov-av/vulristics

- https://github.com/meloppeitreet/Personal-YARA-Collection-by-meloppeitreet

- https://github.com/moften/CVE-2025-24054

- https://github.com/nomi-sec/PoC-in-GitHub

- https://github.com/packetinside/CISA_BOT

- https://github.com/plzheheplztrying/cve_monitor

- https://github.com/pswalia2u/CVE-2025-24071_POC

- https://github.com/rubenformation/CVE-2025-50154

- https://github.com/ums91/CISA_BOT

- https://github.com/xigney/CVE-2025-24054_PoC

- https://github.com/yum1ra/CVE-2025-24054_CVE-2025-24071-PoC

- https://github.com/zenzue/CVE-2025-50154

- https://github.com/zhanpengliu-tencent/medium-cve