CISA Known Exploited Vulnerability (KEV)
Microsoft Windows Storage Link Following Vulnerability
February 11, 2025
March 4, 2025
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Description
Windows Storage Elevation of Privilege Vulnerability
Weakness Enumeration
CWE-ID | CWE Name |
---|---|
CWE-59 |
Improper Link Resolution Before File Access (‘Link Following’) |