SophiaX
🔍
LIVE
· New victim: cipher.systems — m3rx· New victim: International Chemical Co. — Barracuda· New victim: M****n — payoutsking· New victim: Applied Composites — Storm· New victim: Magna Legal Services — Storm· New KEV: CVE-2026-65660 · Microsoft· New KEV: CVE-2026-87902 · WordPress· New KEV: CVE-2026-67279 · MikroTik· New KEV: CVE-2026-71362 · Adobe· New KEV: CVE-2026-5430 · WSO2· New victim: 6,898 new IOCs ingested in last 24h cipher.systems — m3rx· New victim: International Chemical Co. — Barracuda· New victim: M****n — payoutsking· New victim: Applied Composites — Storm· New victim: Magna Legal Services — Storm· New KEV: CVE-2026-65660 · Microsoft· New KEV: CVE-2026-87902 · WordPress· New KEV: CVE-2026-67279 · MikroTik· New KEV: CVE-2026-71362 · Adobe· New KEV: CVE-2026-5430 · WSO2· 6,898 new IOCs ingested in last 24h

CVE-2025-33073

⚡ CISA KEV
Published: —Modified: —Vendor: MicrosoftProduct: Windows
—
CVSS v3
82.7%
EPSS
⚡ Added to KEV on 2025-10-20 · Federal agencies must remediate by 2025-11-10
Microsoft Windows SMB Client contains an improper access control vulnerability that could allow for privilege escalation. An attacker could execute a specially crafted malicious script to coerce the victim machine to connect back to the attack system using SMB and authenticate.
💣 Public Exploits1
From Exploit-DB
Windows 11 SMB Client - Privilege Escalation & Remote Code Execution (RCE)windowsremote2025-06-15
🔍 Sigma Detection Rules0
Rules tagged with this CVE
No Sigma rules tagged with this CVE.
🛠️ Patch Details4
Affected/fixed versions from threat intel reports
Microsoft Windows SMB Clientsource ↗
Atlassian Confluence——source ↗
Microsoft Windowssource ↗
Microsoft Windows SMB——source ↗
📎 References0
No reference URLs.