CVE-2025-21298
CRITICAL 9.8EPSS 80.9%
Windows OLE Remote Code Execution Vulnerability
- CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS
- 80.91% chance of exploitation in the next 30 days, 100th percentile
- Published
- 2025-01-14
- Updated
- 2026-06-09
Proof-of-concept exploits (8)
- Dit-Developers/CVE-2025-212981★ · 2025-03-07
- fy-poc/full-poc-CVE-2025_212981★ · 2025-09-22
- ynwarcs/CVE-2025-21298198★ · 2025-01-20
- Arkha-Corvus/LetsDefend-SOC336-Windows-OLE-Zero-Click-RCE-Exploitation-Detected-CVE-2025-…
- C-G-creator/LetsDefend-SOC336-Windows-OLE-Zero-Click-RCE-Exploitation-Detected-CVE-2025-2…
- TheBl4ckPh4nt0m/CVE-2025-21298
- IsMyPhonePwned/mimic4★ · 2026-02-05
- f-marra/LetsDefend