CVE-2025-21375
CVSS 3.1 Score 7.8 of 10 (high)
Details
Summary
CVE-2025-21375 is a vulnerability affecting the Kernel Streaming WOW64 Thunk Service Driver. this issue grants attackers the ability to elevate their privileges by exploiting a vulnerability in this component. Successful exploitation could allow an attacker to gain system-level access and potentially execute arbitrary code. The exact cause of this vulnerability is still under investigation, but it is recommended that affected systems be patched as soon as possible to mitigate the risk. Microsoft has released a security update to address this issue. In summary, CVE-2025-21375 is a newly discovered vulnerability that allows attackers to elevate their privileges on systems with the Kernel Streaming WOW64 Thunk Service Driver. The impact of this issue is significant as it could allow attackers to gain full system access and potentially execute malicious code. The cause of the vulnerability is under investigation, but it is recommended that affected systems be patched with the recently released Microsoft security update to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows Server 2008
Affected Vendors
- Microsoft