CVE-2025-42706
Last modified
CVE-2025-42706 is a medium-severity vulnerability rated 6.5/10 on the CVSS scale. A logic error exists in the Falcon sensor for Windows that could allow an attacker, with the prior ability to execute code on a host, to delete arbitrary files. CrowdStrike released a security fix for this issue in Falcon sensor for Windows versions 7.24 and above and all Long Term Visibility (LTV) sensors. There is no indication of exploitation of these issues in the wild. EPSS estimates a 0.17% chance of exploitation in the next 30 days.
Description
A logic error exists in the Falcon sensor for Windows that could allow an attacker, with the prior ability to execute code on a host, to delete arbitrary files. CrowdStrike released a security fix for this issue in Falcon sensor for Windows versions 7.24 and above and all Long Term Visibility (LTV) sensors. There is no indication of exploitation of these issues in the wild. Our threat hunting and intelligence teams are actively monitoring for exploitation and we maintain visibility into any such attempts. The Falcon sensor for Mac, the Falcon sensor for Linux and the Falcon sensor for Legacy Systems are not impacted by this. CrowdStrike was made aware of this issue through our HackerOne bug bounty program. It was discovered by Cong Cheng and responsibly disclosed.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-42706?
How severe is CVE-2025-42706?
How do I fix CVE-2025-42706?
How Strix Helps
- Same Subject, Wrong User: A Cross-Issuer Account Takeover in n8nStrix found an identity-binding bug in n8n's token-exchange flow enabling account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-4266A vulnerability, which was classified as critical, has been …9.8
- CVE-2025-4267A vulnerability, which was classified as critical, was found…7.2
- CVE-2025-4268A vulnerability has been found in TOTOLINK A720R 4.1.5cu.374…6.9
- CVE-2025-4269A vulnerability was found in TOTOLINK A720R 4.1.5cu.374 and …5.3
- CVE-2025-4270A vulnerability was found in TOTOLINK A720R 4.1.5cu.374. It …7.5
- CVE-2025-42701A race condition exists in the Falcon sensor for Windows tha…5.6
- CVE-2025-4271A vulnerability was found in TOTOLINK A720R 4.1.5cu.374. It …6.9
- CVE-2025-4272A vulnerability was found in Mechrevo Control Console 1.0.2.…7.3
- CVE-2025-4273Rejected reason: This CVE ID has been rejected or withdrawn …
- CVE-2025-4275A vulnerability in the digital signature verification proces…7.8
- CVE-2025-4276UsbCoreDxe has a vulnerability which can be used to write ar…7.5
- CVE-2025-4277Tcg2Smm has a vulnerability which can be used to write arbit…7.5
Are you affected by CVE-2025-42706?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
