CVE-2025-21379
CVSS 3.1 Score 7.1 of 10 (high)
Details
Summary
CVE-2025-21379 is a newly discovered remote code execution vulnerability affecting the DHCP Client Service. An attacker can exploit this flaw by crafting a malicious DHCP offer, which, if accepted, would allow the attacker to execute arbitrary code on the affected system. This vulnerability poses a serious threat as it can be exploited over the network without requiring any user interaction. It is recommended that affected systems be patched as soon as possible to mitigate this risk. The exploitation of this vulnerability could lead to a range of malicious activities, including data theft, unauthorized access, and the installation of malware.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows 11
Affected Vendors
- Microsoft