Description
External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
Related CPE's
o
microsoft
windows_10_1607
2
o
microsoft
windows_10_1809
2
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
o
microsoft
windows_server_2008
3
o
microsoft
windows_server_2012
2
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
6.5 · Medium
Information
Source identifier
Vulnerability status
Analyzed
Published
2026-01-13T18:16:19.200Z
3 days agoLast modified
2026-01-16T14:39:54.210Z
4 hours ago