Vulnerability · NVD
CVE-2025-33071
CRITICAL 8.1
Windows KDC Proxy Service (KPSSVC) Remote Code Execution Vulnerability
EPSS
1.13%
above median
percentile 78.7%
OS versions that fix this CVE
This CVE is resolved by the following OS security releases. Update the OS to at least the listed version.
- Windows Fixed in Windows Server 2025 (Server Core installation) 10.0.26100.4349 Windows Server 2025 10.0.26100.4349 Windows Server 2022 (Server Core installation) 10.0.20348.3807 Windows Server 2022 10.0.25398.1665 Windows Server 2019 (Server Core installation) 10.0.17763.7434 Windows Server 2019 10.0.17763.7434 Windows Server 2016 (Server Core installation) 10.0.14393.8148 Windows Server 2016 10.0.14393.8148