Evidence dossier

CVE-2023-36025

Windows SmartScreen Security Feature Bypass Vulnerability

Exploited in the wild (CISA KEV since Nov 14, 2023). NVD reports CVSS 3.1 8.8. EPSS estimates 88.2% exploit likelihood as of Aug 27, 2026.

87.693.7Priority evidence range
Evidence current through Aug 27, 2026, 6:09 PM UTC

As of Aug 27, 2026

Normalized restatement

Windows SmartScreen Security Feature Bypass Vulnerability

State
PUBLISHED
Published
Nov 14, 2023
Updated
Oct 21, 2025
Evidence coverage
92%

Evidence chronology

What was known when

Download this view's receipt →
  1. Source dateSource date omittedFirst observed by CASCA
    CISA-ADP

    Record text: CISA ADP Vulnrichment

    Inspect raw assertion
    Field
    container
    Value
    CISA ADP Vulnrichment
    Original evidence ↗
  2. Source dateSource date omittedFirst observed by CASCA
    CVE Program

    Record text: CVE Program Container

    Inspect raw assertion
    Field
    container
    Value
    CVE Program Container
    Original evidence ↗
  3. Source dateSource date omittedFirst observed by CASCA
    microsoft

    Record text: Windows SmartScreen Security Feature Bypass Vulnerability

    Inspect raw assertion
    Field
    container
    Value
    Windows SmartScreen Security Feature Bypass Vulnerability
    Original evidence ↗
  4. Source dateFirst observed by CASCA
    CISA KEV

    Exploitation cataloged: Microsoft Windows SmartScreen Security Feature Bypass Vulnerability

    Inspect raw assertion
    Field
    observed_exploitation
    Value
    Microsoft Windows SmartScreen Security Feature Bypass Vulnerability
    Original evidence ↗
  5. Source dateFirst observed by CASCA
    FIRST EPSS

    EPSS score: 88.2% probability · 99.76th percentile

    Inspect raw assertion
    Field
    model_probability
    Value
    Probability 0.881960000000; percentile 0.997550000000
    Original evidence ↗
ExploitationCatalog member

CISA KEV · catalog date Nov 14, 2023 · first observed Jul 19, 2026

Exploit likelihood88.20%

FIRST EPSS · score date Aug 27, 2026 · 99.8th percentile · first observed Aug 27, 2026

SeverityCVSS 8.8

NVD · CVSS 3.1 · first observed Jul 19, 2026 · same-version scores align in this snapshot

Evidence detail

Source limits and decisions

Why each evidence state has this value

casca-unknown-reasons-v1
Exploitation statusEvidence supported

Eligible evidence is present for this bounded claim.

Revision
evidence-policy-v1.1.0
Cutoff
Aug 27, 2026
Resolution
None
Exploit likelihoodEvidence supported

Eligible evidence is present for this bounded claim.

Revision
evidence-policy-v1.1.0
Cutoff
Aug 27, 2026
Resolution
None
Severity assessmentEvidence supported

Eligible evidence is present for this bounded claim.

Revision
casca-direct-cvss-eligibility-v1
Cutoff
Aug 27, 2026
Resolution
None
Affected productsSource-reported scope

The cited source assertion is retained while canonical product linkage remains open.

Revision
casca-factor-d-obligations-v1
Cutoff
Aug 27, 2026
Resolution
Resolve identity

Source comparison

Who said what

CISA-ADPIndependent enrichment
Record text

CISA ADP Vulnrichment

Inspect raw assertion
Field
container
Value
CISA ADP Vulnrichment
Source dateSource date omittedFirst observed by CASCAOriginal evidence ↗
CVE ProgramDerivative copy
Record text

CVE Program Container

Inspect raw assertion
Field
container
Value
CVE Program Container
Source dateSource date omittedFirst observed by CASCAOriginal evidence ↗
microsoftOriginal assertion
Record text

Windows SmartScreen Security Feature Bypass Vulnerability

Inspect raw assertion
Field
container
Value
Windows SmartScreen Security Feature Bypass Vulnerability
Source dateSource date omittedFirst observed by CASCAOriginal evidence ↗
CISA KEVOriginal assertion
Exploitation cataloged

Microsoft Windows SmartScreen Security Feature Bypass Vulnerability

Inspect raw assertion
Field
observed_exploitation
Value
Microsoft Windows SmartScreen Security Feature Bypass Vulnerability
Source dateFirst observed by CASCAOriginal evidence ↗
FIRST EPSSOriginal assertion
EPSS score

88.2% probability · 99.76th percentile

Inspect raw assertion
Field
model_probability
Value
Probability 0.881960000000; percentile 0.997550000000
Source dateFirst observed by CASCAOriginal evidence ↗

Applicability

Cited product scope

Trace impact →
26Underlying assertions
13Canonical products
26Target assertions
0Constraint assertions

Grouped from 1 configuration nodes in this exact snapshot. Visual grouping is navigational; asset exposure and root cause require cited evidence.

Identity source boundaries
  • Cpe dictionary1,775,266 records · observed through 2026-07-21T06:45:29.809Z27d65b0f-b718-4b4f-bb79-c47c68d09dfa
  • Cpe match643,502 records · observed through 2026-07-21T08:13:17.697Z955dae73-7302-438b-aee1-058d7cc5d48e

38 scope groups

microsoft · source assertedMicrosoftWindows 10 Version 1507Direct source scope
Affected: 10.0.10240.0 to before 10.0.10240.20308 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.10240.0", "lessThan": "10.0.10240.20308", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows 10 Version 1607Direct source scope
Affected: 10.0.14393.0 to before 10.0.14393.6452 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.14393.0", "lessThan": "10.0.14393.6452", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows 10 Version 1809Direct source scope
Affected: 10.0.17763.0 to before 10.0.17763.5122 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.17763.0", "lessThan": "10.0.17763.5122", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows 10 Version 1809Direct source scope
Affected: 10.0.0 to before 10.0.17763.5122 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.0", "lessThan": "10.0.17763.5122", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows 10 Version 21H2Direct source scope
Affected: 10.0.19043.0 to before 10.0.19043.3693 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.19043.0", "lessThan": "10.0.19043.3693", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows 10 Version 22H2Direct source scope
Affected: 10.0.19045.0 to before 10.0.19045.3693 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.19045.0", "lessThan": "10.0.19045.3693", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows 11 version 21H2Direct source scope
Affected: 10.0.0 to before 10.0.22000.2600 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.0", "lessThan": "10.0.22000.2600", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows 11 version 22H2Direct source scope
Affected: 10.0.22621.0 to before 10.0.22621.2715 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.22621.0", "lessThan": "10.0.22621.2715", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows 11 version 22H3Direct source scope
Affected: 10.0.22631.0 to before 10.0.22631.2715 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.22631.0", "lessThan": "10.0.22631.2715", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows 11 Version 23H2Direct source scope
Affected: 10.0.22631.0 to before 10.0.22631.2715 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.22631.0", "lessThan": "10.0.22631.2715", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows Server 2008 R2 Service Pack 1Direct source scope
Affected: 6.1.7601.0 to before 6.1.7601.26816 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "6.1.7601.0", "lessThan": "6.1.7601.26816", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows Server 2008 R2 Service Pack 1 (Server Core installation)Direct source scope
Affected: 6.1.7601.0 to before 6.1.7601.26816 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "6.1.7601.0", "lessThan": "6.1.7601.26816", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows Server 2008 Service Pack 2Direct source scope
Affected: 6.0.6003.0 to before 6.0.6003.22367 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "6.0.6003.0", "lessThan": "6.0.6003.22367", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows Server 2008 Service Pack 2Direct source scope
Affected: 6.0.6003.0 to before 6.0.6003.22367 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "6.0.6003.0", "lessThan": "6.0.6003.22367", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows Server 2008 Service Pack 2 (Server Core installation)Direct source scope
Affected: 6.0.6003.0 to before 6.0.6003.22367 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "6.0.6003.0", "lessThan": "6.0.6003.22367", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows Server 2012Direct source scope
Affected: 6.2.9200.0 to before 6.2.9200.24569 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "6.2.9200.0", "lessThan": "6.2.9200.24569", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows Server 2012 R2Direct source scope
Affected: 6.3.9600.0 to before 6.3.9600.21668 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "6.3.9600.0", "lessThan": "6.3.9600.21668", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows Server 2012 R2 (Server Core installation)Direct source scope
Affected: 6.3.9600.0 to before 6.3.9600.21668 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "6.3.9600.0", "lessThan": "6.3.9600.21668", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows Server 2012 (Server Core installation)Direct source scope
Affected: 6.2.9200.0 to before 6.2.9200.24569 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "6.2.9200.0", "lessThan": "6.2.9200.24569", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows Server 2016Direct source scope
Affected: 10.0.14393.0 to before 10.0.14393.6452 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.14393.0", "lessThan": "10.0.14393.6452", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows Server 2016 (Server Core installation)Direct source scope
Affected: 10.0.14393.0 to before 10.0.14393.6452 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.14393.0", "lessThan": "10.0.14393.6452", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows Server 2019Direct source scope
Affected: 10.0.17763.0 to before 10.0.17763.5122 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.17763.0", "lessThan": "10.0.17763.5122", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows Server 2019 (Server Core installation)Direct source scope
Affected: 10.0.17763.0 to before 10.0.17763.5122 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.17763.0", "lessThan": "10.0.17763.5122", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows Server 2022Direct source scope
Affected: 10.0.20348.0 to before 10.0.20348.2113 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.20348.0", "lessThan": "10.0.20348.2113", "versionType": "custom"}]
microsoft · source assertedMicrosoftWindows Server 2022, 23H2 Edition (Server Core installation)Direct source scope
Affected: 10.0.25398.0 to before 10.0.25398.531 (custom comparison)
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "10.0.25398.0", "lessThan": "10.0.25398.531", "versionType": "custom"}]

Affected-product evidence

Accepted scope and product mapping

13 canonical links · 1 source-reported links

Mapping establishedEvidence supported

vendor-01299a5a765aea70faa05f2d06e0c26a5d498fd34553e868d89e8a43b31864db · product-026201767813843a6d53867bacde4a55c3035cb868c0a72434012c5e30dab148

Source class
Nvd cpe vulnerable target
Assertions
2
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
e8831ae8-3c37-4c57-98fa-7374351a6c1af9050d8d-a365-47a7-9887-5edc539c04ab
Mapping establishedEvidence supported

vendor-01299a5a765aea70faa05f2d06e0c26a5d498fd34553e868d89e8a43b31864db · product-02e254d111ce604757a15650ef469f4f8365d6247da82ce3ac2695c3cfc7dc5f

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
4a5593aa-3883-4910-8efb-a52aeef5096b
Mapping establishedEvidence supported

vendor-01299a5a765aea70faa05f2d06e0c26a5d498fd34553e868d89e8a43b31864db · product-217b1ab3d25f361a639824f86753d418b35aa2a816ee370bb71b5d1dd883d87a

Source class
Nvd cpe vulnerable target
Assertions
2
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
41c3dd05-0835-410d-979b-93c114dd19a0c786e377-5bad-4b1c-b90f-aae44e1c22a4
Mapping establishedEvidence supported

vendor-01299a5a765aea70faa05f2d06e0c26a5d498fd34553e868d89e8a43b31864db · product-25a2932c0bbcb648f7e391c8b9d34c734e5085444c03c1c206b9d4c4baa80b25

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
2445cebe-8990-4536-94d6-a3a4bf03b2b9
Mapping establishedEvidence supported

vendor-01299a5a765aea70faa05f2d06e0c26a5d498fd34553e868d89e8a43b31864db · product-5a80416e92fed0cddbb3d4f3840218b448dee11159824ad25a0353da566963fe

Source class
Nvd cpe vulnerable target
Assertions
2
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
694c189c-9645-4c8e-88dd-bbd8f498abdaddceb1fd-a0b1-4216-ac91-791db1339566
Mapping establishedEvidence supported

vendor-01299a5a765aea70faa05f2d06e0c26a5d498fd34553e868d89e8a43b31864db · product-740fec3e9838b5eabe76ebe27e4d0d7a4cb2e0ef7e13923300d3d0b51e3fce1c

Source class
Nvd cpe vulnerable target
Assertions
2
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
76266cba-a381-4f1a-978d-6040e3eb8b15faea7234-ed23-4c12-aa0f-295630c29e58
Mapping establishedEvidence supported

vendor-01299a5a765aea70faa05f2d06e0c26a5d498fd34553e868d89e8a43b31864db · product-7fe28b5b5b17e017d9554204df059dd619746ffb5c80da87bcbfb1c52720d2f4

Source class
Nvd cpe vulnerable target
Assertions
2
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
6714f52c-5523-4b7a-a39c-4601d20d0fe6b280c87e-abce-4c77-98e0-055648162c11
Mapping establishedEvidence supported

vendor-01299a5a765aea70faa05f2d06e0c26a5d498fd34553e868d89e8a43b31864db · product-9851bd571b8ab08bca589cd73710badfef557d036f0fb7707f694f1c9f597cb4

Source class
Nvd cpe vulnerable target
Assertions
2
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
33df4390-723f-4acc-be48-3c768d38b70673660627-5537-47e4-b6fd-f99e7363aebb
Mapping establishedEvidence supported

vendor-01299a5a765aea70faa05f2d06e0c26a5d498fd34553e868d89e8a43b31864db · product-a3084138383423221f61594e86f5b295e5e254acd7ae5284f45e0877a084db43

Source class
Nvd cpe vulnerable target
Assertions
3
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
0d2eac68-b3ae-4269-9e06-db4c19c05579853a4e08-cc3b-4284-aaa9-392fda759313b2cd21d6-a4fc-40e8-a7ae-7396fc4b9f3d
Mapping establishedEvidence supported

vendor-01299a5a765aea70faa05f2d06e0c26a5d498fd34553e868d89e8a43b31864db · product-a6295b9daad3ca57ce70751badba5b7fe99229c8a562cc7400e8cfef3daccaee

Source class
Nvd cpe vulnerable target
Assertions
3
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
3e46df4c-6171-48ad-a098-42a8bcb66ffba8fabc28-2755-4686-a383-15c59337b1aeaa1a5afc-47f9-458f-8dba-d729d5362826
Mapping establishedEvidence supported

vendor-01299a5a765aea70faa05f2d06e0c26a5d498fd34553e868d89e8a43b31864db · product-d196d31962e613955a91e33e795c22dcfa7bf25173abebaca616a6350cce9ce1

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
0664f5c1-25a1-4a96-8fdd-ed29499723af
Mapping establishedEvidence supported

vendor-01299a5a765aea70faa05f2d06e0c26a5d498fd34553e868d89e8a43b31864db · product-ec10c9f400f23fdf118887f60fe116ffde4adb76dcf118cdd3a7556fd033da3b

Source class
Nvd cpe vulnerable target
Assertions
3
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
549495ee-551e-490b-b872-2fd2879aecab7bd9b401-b3ef-4149-aa2d-11cb1226c6047ce538a0-2685-4410-9c65-3dfb650f7082
Mapping establishedEvidence supported

vendor-01299a5a765aea70faa05f2d06e0c26a5d498fd34553e868d89e8a43b31864db · product-f8c509b6ec25f2a4338a23556be321da5a7c3e8da9f1a4c52f7f15dd0e9a0d2a

Source class
Nvd cpe vulnerable target
Assertions
2
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
2fd3ef92-9a5d-448e-80fa-8863f36aacdf9b9cecac-9e89-4fe7-88b7-87764f6608dd
Source-reported scopeSource-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Vendor specified only by source · Product specified only by source

Source class
Direct cve affected
Assertions
25
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
2cb6701a-ef3f-4a20-8ec1-a8c322acc66930f9aca1-847c-451e-9ae5-72593ad2520235523c4c-3e90-47c5-abdc-8e8ddc3e9da14293b762-140f-4f95-8174-e3dac7c9e8fb44ac48b0-148d-464d-af67-d22a65846a0454509efa-e735-4ad1-b346-7ee513edb3a15bdfeeea-58fa-4b43-9ae6-e41f7f5479bc5feb85df-16b3-49f9-b42c-2962fd4a5ba0603668d5-6763-4afd-a424-1467c98760ce7fa23757-abf1-412d-a82e-c63ab68dc4a28296f7f0-33de-4b38-8fee-ef21e7cb20b387247ea0-e18f-4806-aa56-e48df9ee46f08b7beedf-f75f-4ced-80ef-3b2cf9ee996792a8c602-c360-4cf0-96ed-94eef0622f1fa022618b-6c50-41e9-88db-03c9f639543ab3524db5-45f2-40a6-9356-8cdd6daf4db0b36ee71f-bf39-4903-a036-93216d621c39b5e04ef5-62d2-418a-89ac-905dba7bc5c4b80c2c50-2faa-49ae-848d-00bbaf9ed66fbc402cb0-a250-45f1-8055-19d1d8b6bfdeceae4432-3e8a-49a8-829f-21547dc78285da05d93e-0216-40b7-a2a3-baea570cece0e28fb29c-2739-4236-bba7-5618ab089f00e32756c4-12ed-4711-bc79-fffb46e480e6f7bb2562-9a20-48c1-b2ca-a4c1e0e29c71

Assessments

CVSS by origin

8.8
NVDCVSS 3.1 · role Primary · priority eligiblevalid_matchCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
8.8
secure@microsoft.comCVSS 3.1 · role Secondary · priority eligiblevalid_matchCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
8.8
microsoftCVSS 3.1 · role unknown · display onlyDirect record assessment retained outside normalized eligibilityCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C

Direct CVE/CNA normalized decisions

8.8Priority eligible

microsoft

CVSS 3.1 · Primary · Original assertion · rank 1

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C
Validation
Valid match
Recomputed
8.8
Decision reason
Evidence supported
Policy
casca-direct-cvss-eligibility-v1

Assessments are retained side by side under closed precedence. Cascade never averages CVSS.

Evidence boundaries

  • KEV membership is authoritative for the catalog, not proof of exposure in any environment.
  • EPSS is a dated model probability and not an individual-environment prediction.
  • Affected or fixed status applies only to the exact cited product and version scope; remaining scope stays source-scoped.
  • NVD-carried upstream facts remain derivative; independent corroboration requires a separately authored source.
  • Only NVD metrics validated under the generation-bound calculator are Public Priority eligible; direct CVE record metrics remain display-only.
  • NVD CVSS source eligibility is closed: NVD-authored, exact record-source, or registered same-CVE container origin; unmapped sources remain display-only.
  • Core replay supports the active and immediately prior generation; retrospective valid-at replay is deferred.
  • OSV aggregation and OSV-converted NVD material are not independent corroboration.
  • Red Hat facts are vendor assertions for the exact supplied products.
  • Nonmembership and not-yet-observed states are not proof of safety.