Language:
Severity: Medium
ID: 277986
File Name: smb_nt_ms25_dec_5072033.nasl
Version: 1.3
Type: local
Agent: windows
Family: Windows : Microsoft Bulletins
Published: 12/9/2025
Updated: 12/17/2025
Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Nessus
Risk Factor: High
Score: 8.1
Risk Factor: Critical
Base Score: 10
Temporal Score: 8.3
Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C
CVSS Score Source: CVE-2025-62549
Risk Factor: Medium
Base Score: 5.5
Temporal Score: 5.1
Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Temporal Vector: CVSS:3.0/E:F/RL:O/RC:C
CVSS Score Source: CVE-2025-62570
CPE: cpe:/o:microsoft:windows, cpe:/o:microsoft:windows_11_24h2
Required KB Items: SMB/MS_Bulletin_Checks/Possible
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 12/9/2025
Vulnerability Publication Date: 12/9/2025
CISA Known Exploited Vulnerability Due Dates: 12/30/2025
CVE: CVE-2025-54100, CVE-2025-55233, CVE-2025-59516, CVE-2025-59517, CVE-2025-62221, CVE-2025-62454, CVE-2025-62456, CVE-2025-62457, CVE-2025-62461, CVE-2025-62462, CVE-2025-62463, CVE-2025-62464, CVE-2025-62465, CVE-2025-62466, CVE-2025-62467, CVE-2025-62468, CVE-2025-62469, CVE-2025-62470, CVE-2025-62472, CVE-2025-62473, CVE-2025-62474, CVE-2025-62549, CVE-2025-62565, CVE-2025-62567, CVE-2025-62569, CVE-2025-62570, CVE-2025-62571, CVE-2025-62572, CVE-2025-62573, CVE-2025-64658, CVE-2025-64661, CVE-2025-64670, CVE-2025-64673