CVE-2025-20664
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Apr 7, 2025
Updated: Apr 11, 2025
CWE ID 248
Summary
CVE-2025-20664 is a vulnerability affecting wlan AP drivers that could result in information disclosure. An uncaught exception in the driver leads to the exposure of sensitive data, making this issue a potential risk for remote (proximal/adjacent) information leaks. Notably, no additional execution privileges or user interaction are required for the exploitation of this vulnerability. This issue is addressed by the patch ID WCNCR00406217 and carries an MS-ISAC Identifier (MSV-2773).
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.