Windows Storage-based Management Service Remote Code Execution Vulnerability
CVE-2025-55231
7.5HIGH
Key Information:
- Vendor
Microsoft
- Status
- Vendor
- CVE Published:
- 21 August 2025
What is CVE-2025-55231?
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Storage allows an unauthorized attacker to execute code over a network.
Affected Version(s)
Windows Server 2012 R2 (Server Core installation) x64-based Systems 6.3.9600.0 < 6.3.9600.22767
Windows Server 2012 R2 x64-based Systems 6.3.9600.0 < 6.3.9600.22767
Windows Server 2016 (Server Core installation) x64-based Systems 10.0.14393.0 < 10.0.14393.8416