CVE-2025-21172
CVSS 3.1 Score 7.5 of 10 (high)
Details
Summary
CVE-2025-21172 is a newly disclosed vulnerability affecting both .NET and Visual Studio. This issue allows an attacker to execute arbitrary code remotely, potentially leading to serious security breaches. The vulnerability exists in the way these applications handle remote data, enabling an attacker to send specially crafted data, resulting in code execution. Microsoft has released patches to address this vulnerability, and it is recommended that users install these updates as soon as possible to protect against potential attacks. Failure to apply the patch could result in unauthorized access to sensitive information or system takeover.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.