Vulnerability detail
Enriched intelligence for a single CVE
High
CVE-2025-21333
PUBLISHEDWindows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability
- Vendor
- Microsoft
- Product
- Windows 10 Version 21H2, Windows 10 Version 22H2, Windows 11 version 22H2, Windows 11 version 22H3, Windows 11 Version 23H2, Windows 11 Version 24H2, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2025, Windows Server 2025 (Server Core installation)
- Published
- Jan 14, 2025
- EPSS
- —
Description
Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability
CVSS scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
SSVC decision points
- Exploitation
- active
- Automatable
- No
- Technical impact
- total
Known exploited vulnerability sources
Catalogues that list this CVE as a known exploited vulnerability.
| Source | Added |
|---|---|
| CISA | Jan 14, 2025 |
Scanner integrations
| Scanner | Reference | Detected |
|---|---|---|
| Nessus | https://www.tenable.com/plugins/nessus/214136 | Jun 02, 2025 |
Potential proof of concepts
These PoCs are unverified and could contain malware. Use at your own risk.
github · Created 2025-03-11 17:32:07 UTC · 0 stars
KQL para deteccion de CVE-2025-21333 en Sentinel
github · Created 2025-02-27 12:36:55 UTC · 186 stars
POC exploit for CVE-2025-21333 heap-based buffer overflow. It leverages WNF state data and I/O ring IOP_MC_BUFFER_ENTRY
Timeline
-
CVE ID Reserved
-
Added to KEVIntel
-
CVE Published to Public
-
Proof of Concept Exploit Available
-
Detected by Nessus