
Unveiling the Windows EPM Poisoning Exploit Chain: A Pathway to Domain Privilege Escalation
Cybersecurity researchers have revealed a significant flaw in Microsoft’s Windows Remote Procedure Call (RPC) protocol, which could be exploited by attackers to conduct spoofing attacks. The vulnerability, assigned CVE-2025-49760 and rated with a CVSS score of 3.5, was categorized as




