Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Get alerts for future matching vulnerabilitiesLog in to subscribe
I. Basic Information for CVE-2025-29810
Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Active Directory Domain Services Elevation of Privilege Vulnerability
Source: NVD (National Vulnerability Database)
Vulnerability Description
Improper access control in Active Directory Domain Services allows an authorized attacker to elevate privileges over a network.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
访问控制不恰当
Source: NVD (National Vulnerability Database)
Vulnerability Title
Microsoft Active Directory Domain Services 访问控制错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Microsoft Active Directory Domain Services是美国微软(Microsoft)公司的一项关键服务,用于管理和组织网络中的资源、用户、计算机和其他安全对象。 Microsoft Active Directory Domain Services存在访问控制错误漏洞。攻击者利用该漏洞可以提升权限。以下产品和版本受到影响:Windows Server 2022, 23H2 Edition (Server Core installation),Windows 11 Versio
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)
Affected Products
VendorProductAffected VersionsCPESubscribe
MicrosoftWindows 10 Version 1507 10.0.10240.0 ~ 10.0.10240.20978 -
MicrosoftWindows 10 Version 1607 10.0.14393.0 ~ 10.0.14393.7969 -
MicrosoftWindows 10 Version 1809 10.0.17763.0 ~ 10.0.17763.7136 -
MicrosoftWindows 10 Version 21H2 10.0.19044.0 ~ 10.0.19044.5737 -
MicrosoftWindows 10 Version 22H2 10.0.19045.0 ~ 10.0.19045.5737 -
MicrosoftWindows 11 version 22H2 10.0.22621.0 ~ 10.0.22621.5189 -
MicrosoftWindows 11 version 22H3 10.0.22631.0 ~ 10.0.22631.5189 -
MicrosoftWindows 11 Version 23H2 10.0.22631.0 ~ 10.0.22631.5189 -
MicrosoftWindows 11 Version 24H2 10.0.26100.0 ~ 10.0.26100.3775 -
MicrosoftWindows Server 2008 R2 Service Pack 1 6.1.7601.0 ~ 6.1.7601.27670 -
MicrosoftWindows Server 2008 R2 Service Pack 1 (Server Core installation) 6.1.7601.0 ~ 6.1.7601.27670 -
MicrosoftWindows Server 2008 Service Pack 2 6.0.6003.0 ~ 6.0.6003.23220 -
MicrosoftWindows Server 2008 Service Pack 2 (Server Core installation) 6.0.6003.0 ~ 6.0.6003.23220 -
MicrosoftWindows Server 2012 6.2.9200.0 ~ 6.2.9200.25423 -
MicrosoftWindows Server 2012 (Server Core installation) 6.2.9200.0 ~ 6.2.9200.25423 -
MicrosoftWindows Server 2012 R2 6.3.9600.0 ~ 6.3.9600.22523 -
MicrosoftWindows Server 2012 R2 (Server Core installation) 6.3.9600.0 ~ 6.3.9600.22523 -
MicrosoftWindows Server 2016 10.0.14393.0 ~ 10.0.14393.7969 -
MicrosoftWindows Server 2016 (Server Core installation) 10.0.14393.0 ~ 10.0.14393.7969 -
MicrosoftWindows Server 2019 10.0.17763.0 ~ 10.0.17763.7136 -
MicrosoftWindows Server 2019 (Server Core installation) 10.0.17763.0 ~ 10.0.17763.7136 -
MicrosoftWindows Server 2022 10.0.20348.0 ~ 10.0.20348.3453 -
MicrosoftWindows Server 2022, 23H2 Edition (Server Core installation) 10.0.25398.0 ~ 10.0.25398.1551 -
MicrosoftWindows Server 2025 10.0.26100.0 ~ 10.0.26100.3775 -
MicrosoftWindows Server 2025 (Server Core installation) 10.0.26100.0 ~ 10.0.26100.3775 -
II. Public POCs for CVE-2025-29810
#POC DescriptionSource LinkShenlong Link
1Para verificar si tu entorno podría ser vulnerable al CVE-2025-29810, necesitamos hacer algunas comprobaciones básicas, como: Versión del sistema operativo y nivel de parche. Presencia de la actualización de seguridad de abril de 2025 de Microsoft. Verificar el rol de Active Directory Domain Services.https://github.com/aleongx/CVE-2025-29810-checkPOC Details
AI-Generated POCPremium

No public POC found.

Login to generate AI POC
III. Intelligence Information for CVE-2025-29810
Please Login to view more intelligence information
IV. Related Vulnerabilities
V. Comments for CVE-2025-29810

No comments yet


Leave a comment