CVE-2025-49666
HIGHWindows Server 2016/2019/2022/2025 Authenticated RCE via Heap-based Buffer Overflow
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2025-49666. PoCs published by 17patmaks.
AI-analyzed exploit summary This repository contains Sigma rules for detecting exploitation attempts of CVE-2025-49666, a heap buffer overflow in the Windows SBEC service, rather than functional exploit code. The rules focus on process creation and crash patterns indicative of exploitation.
Description
Heap-based buffer overflow in Windows Kernel allows an authorized attacker to execute code over a network.
Exploits (1)
This repository contains Sigma rules for detecting exploitation attempts of CVE-2025-49666, a heap buffer overflow in the Windows SBEC service, rather than functional exploit code. The rules focus on process creation and crash patterns indicative of exploitation.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H