Improper authentication in Windows NTLM allows an authorized attacker to elevate privileges over a network.
No PoCs from references.
- https://github.com/ARPSyndicate/cve-scores
- https://github.com/mrk336/From-Foothold-to-Domain-Admin-Weaponizing-CVE-2025-54918-in-Real-World-DevOps
- https://github.com/nomi-sec/PoC-in-GitHub
- https://github.com/tanjiti/sec_profile