CVE-2025-21328
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Jan 14, 2025
CWE ID 41
Summary
CVE-2025-21328 is a security vulnerability that affects the MapUrlToZone feature. This issue allows attackers to bypass the MapUrlToZone Security Feature, potentially exposing organizations to phishing attacks or other security threats. The vulnerability occurs due to improper input validation, enabling malicious URLs to be incorrectly classified as safe. Organizations using this feature are advised to apply the necessary patches as soon as possible to mitigate the risk of exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows Server 2008
Affected Vendors
- Microsoft