Vulnerability · NVD
CVE-2025-21311
CRITICAL 9.8
Vendor bulletin scale — NVD CVSS pending
Windows NTLM V1 Elevation of Privilege Vulnerability
EPSS
2.23%
above median
percentile 81.1%
OS versions that fix this CVE
This CVE is resolved by the following OS security releases. Update the OS to at least the listed version.
- Windows Server 2025 Fixed in 10.0.26100.2894
- Windows Server 2022 Fixed in 10.0.25398.1369
- Windows 11 24H2 · 2024-H2 Fixed in 10.0.26100.2894