CVE Vulnerabilities

CVE-2025-48802

Improper Certificate Validation

Published: Jul 08, 2025 | Modified: Jul 15, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Improper certificate validation in Windows SMB allows an authorized attacker to perform spoofing over a network.

Weakness

The product does not validate, or incorrectly validates, a certificate.

Affected Software

Name Vendor Start Version End Version
Windows_11_22h2 Microsoft * 10.0.22621.5624 (excluding)
Windows_11_23h2 Microsoft * 10.0.22631.5624 (excluding)
Windows_server_2022 Microsoft * 10.0.20348.3932 (excluding)
Windows_server_2022_23h2 Microsoft * 10.0.25398.1732 (excluding)

Potential Mitigations

References