Headline
CVE-2025-59185: NTLM Hash Disclosure Spoofing Vulnerability
According to the CVSS metric, user interaction is required (UI:R). What interaction would the user have to do?
A user interacting with the file in multiple ways will cause the NTLM hash to be leaked. A few interactions which trigger this leak include:
- Opening the parent folder in Explorer
- Clicking the file (any mouse button)
- Dragging the file
- Deleting the file