CVE-2025-58739

Severity
6.5MEDIUM
EPSS
0.1%
top 77.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 14

Description

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spoofing over a network.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages35 packages

NVDmicrosoft/windows< 10.0.17763.7919+4
NVDmicrosoft/windows_10_1507< 10.0.10240.21161
NVDmicrosoft/windows_10_1607< 10.0.14393.8519
NVDmicrosoft/windows_10_1809< 10.0.17763.7919
NVDmicrosoft/windows_10_21h2< 10.0.19044.6456

🔴Vulnerability Details

2
CVEList
Microsoft Windows File Explorer Spoofing Vulnerability2025-10-14
GHSA
GHSA-prw2-fqj4-qmh7: Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spoofing over a network2025-10-14

📋Vendor Advisories

1
Microsoft
Microsoft Windows File Explorer Spoofing Vulnerability2025-10-14
CVE-2025-58739 (MEDIUM CVSS 6.5) | Exposure of sensitive information t | cvebase.io