AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-1421

UNKNOWN · CVSS N/A EPSS 0.21%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-05-21 · Last synced 2026-08-04

CyberRota Analysis

This vulnerability has an unknown severity rating. It affects Microsoft. It may be remotely exploitable.

CVE
CVE-2025-1421
Severity
UNKNOWN
CVSS
N/A
EPSS
0.21%
Microsoft

Original NVD Description

Data provided in a request performed to the server while activating a new device are put in a database. Other high privileged users might download this data as a CSV file and corrupt their PC by opening it in a tool such as Microsoft Excel. The attacker could gain remote access to the user's PC. This issue has been fixed in 2.17.5 version of Konsola Proget (server part of the MDM suite).