Home
HIGH: 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C 6.2.9200.0 (custom) before 6.2.9200.25522
affected
6.2.9200.0 (custom) before 6.2.9200.25522
affected
6.3.9600.0 (custom) before 6.3.9600.22620
affected
6.3.9600.0 (custom) before 6.3.9600.22620
affected
10.0.14393.0 (custom) before 10.0.14393.8148
affected
10.0.14393.0 (custom) before 10.0.14393.8148
affected
10.0.17763.0 (custom) before 10.0.17763.7434
affected
10.0.17763.0 (custom) before 10.0.17763.7434
affected
10.0.20348.0 (custom) before 10.0.20348.3807
affected
10.0.25398.0 (custom) before 10.0.25398.1665
affected
10.0.26100.0 (custom) before 10.0.26100.4349
affected
10.0.26100.0 (custom) before 10.0.26100.4349
affected
Description
Use after free in Windows KDC Proxy Service (KPSSVC) allows an unauthorized attacker to execute code over a network.
Problem types
Product status
References
msrc.microsoft.com/update-guide/vulnerability/CVE-2025-33071 (Windows KDC Proxy Service (KPSSVC) Remote Code Execution Vulnerability)