Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2025-33053

External control of file name or path in Internet Shortcut Files allows an unauthorized attacker to execute code over a network.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.217
EPSS Ranking 95.5%
CVSS Severity
CVSS v3 Score 8.8
Proposed Action
Microsoft Windows contains an external control of file name or path vulnerability that could allow an attacker to execute code from a remote WebDAV location specified by the WorkingDirectory attribute of Internet Shortcut files.
Ransomware Campaign
Unknown
Products affected by CVE-2025-33053


Contact Us

Shodan ® - All rights reserved