CVE-2025-33053
Exploited in the Wild
✓ Confirmed 0-Day
★ Google Project Zero
Triaged: March 3, 2026
3 articles
EPSS Score
Source: FIRST.org · 2026-05-24
47.02%
probability
This CVE has a 47.02% probability
of being exploited in the next 30 days.
0%
Top 97.7th percentile of all CVEs
100%
CVSS score unavailable
Neither CIRCL nor NVD returned a CVSS score for this CVE.
View on VulnerabilityLookup ↗
Description
Project ZeroInternet Shortcut Files Remote Code Execution Vulnerability
Attack Intelligence
Google Project Zero
Patched
June 10, 2025
Reported by
Alexandra Gofman and David Driker (Check Point Research)
Root Cause Analysis
???
Exploits & PoC
DevBuiHieu/CVE-2025-33053-Proof-Of-Concept
CVE-2025-33053 Proof Of Concept (PoC)
63
kra1t0/CVE-2025-33053-WebDAV-RCE-PoC-and-C2-Concept
Proof-of-Concept for CVE-2025-33053 Exploiting WebDAV with .url file delivery to demonstrate realistic remote code execution. Includes a decoy PDF pa
3
TheTorjanCaptain/CVE-2025-33053-Checker-PoC
CVE-2025-33053 Checker and PoC
1
4n4s4zi/CVE-2025-33053_PoC
POC exploit for CVE-2025-33053 (External control of file execution path in URL file)
1
Cyberw1ng/CVE-2025-33053-POC
POC for CVE-2025-33053 WebDav Exploit, demonstrating how the vulnerability can be triggered in a real environment. This repository focuses on hands-on
0
5 repos — triés par ⭐
Rechercher sur GitHub ↗
Hackers exploited Windows WebDav zero-day to drop malware
BleepingComputer
Jun 11, 2025
Microsoft and Adobe Patch Tuesday, June 2025 Security Update Review
Qualys
Jun 10, 2025
Signal Intelligence
Confidence
82%
EPSS
47.02%
Mentions
3
Last Seen
Jun 11, 2025
CNA Information
Analyst Note
CVE-2025-33053 is confirmed with high severity (CVSS 8.8) affecting Windows 10, documented in Google Project Zero, and supported by evidence of active exploitation for malware delivery via WebDAV. The single article reference and absence from CISA KEV catalog slightly temper confidence, but the combination of authoritative disclosure and real-world attack evidence substantiates the confirmed status.
Threat Actors 18
APT 29
apt_group
Information theft and espionage
🇷🇺 RU
Cobalt
apt_group
Financial crime
🇷🇺 RU
APT 28
apt_group
Information theft and espionage
🇷🇺 RU
Hacking Team
apt_group
🇮🇹 IT
Avalanche
apt_group
🇺🇦 UA
Returned Libra
apt_group
🇨🇳 CN
APT 22
apt_group
Information theft and espionage
🇨🇳 CN
APT 6
apt_group
Information theft and espionage
🇨🇳 CN
Red Dev 17
apt_group
🇨🇳 CN
Stealth Falcon
apt_group
Information theft and espionage
🇦🇪 AE
Red October
apt_group
🇷🇺 RU
Operation Red Signature
apt_group
Information theft and espionage
🇨🇳 CN
Patched Lightning
apt_group
🇬🇭 GH
Operation Digital Eye
apt_group
Information theft and espionage
🇨🇳 CN
Shadow Network
apt_group
Information theft and espionage
🇨🇳 CN
Mana Team
apt_group
🇨🇳 CN
APT 5
apt_group
Information theft and espionage
🇨🇳 CN
Storm-2460
apt_group
🇷🇺 RU
Triage Info
Decided atMar 03, 2026