CVE-2025-21314

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Jan 14, 2025
CWE ID 451

Summary

CVE-2025-21314 is a new vulnerability affecting Windows SmartScreen. Hackers can exploit this spoofing weakness to deceive users into believing that fraudulent websites are safe. The vulnerability allows attackers to manipulate the security feature's certificate presentation, potentially leading to the installation of malware or phishing scams. Users are urged to update their Windows systems as soon as possible to mitigate this risk. This vulnerability can undermine users' trust in the security of their browsing experience and expose them to potential threats.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows 10
  • Microsoft Windows 11
  • Windows Server 2022

Affected Vendors

  • Microsoft