CVE-2025-24991🔥 Known Exploited (CISA KEV)MEDIUM5.5CVSS Severity ScoreEPSS Score0.0000%EPSS Percentile0.00thPublished2025-03-11Last Modified2026-06-17Data SourcesNVDCISA KEVVulnerability DescriptionOut-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally.Affected Platforms (CPE)💻MicrosoftWindows 10 1507< 10.0.10240.20947💻MicrosoftWindows 10 1607< 10.0.14393.7876💻MicrosoftWindows 10 1809< 10.0.17763.7009💻MicrosoftWindows 10 21h2< 10.0.19044.5608Show All Affected Platforms (+11 more)References & Advisories🔗 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-24991🔗 https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-24991