Microsoft Windows NTLM Hash Disclosure Spoofing Vulnerability

Vulnerability

A spoofing vulnerability allowing the disclosure of NTLMv2 hashes has been identified in various supported versions of Microsoft Windows. This vulnerability could be exploited to authenticate as the user whose hash was disclosed.

Impact

Exploitation of this vulnerability leads to the disclosure of a user's NTLMv2 hash, allowing an attacker to authenticate as that user.

Remediation

Users can apply the security updates provided by Microsoft to address this vulnerability. These security updates are available through the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles KB5052000, KB5052040, KB5052016, KB5052038, and KB5052006.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.4
remediation
7.7
relevance
0.0
threat
0.1
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.