Nicolas Krassas[verified]@DinosnDisclosure
The article announces CVE-2025-29969, describing how weak credentials can be exploited via the Windows Eventlog service, but it does not provide PoC, exploit code, patch information, or evidence of active exploitation.
Blue Team News[verified]@blueteamsec1General
The post references CVE‑2025‑29969, describing a weakness involving weak credentials via the Windows Eventlog service, but offers no PoC, exploit code, patch information, or evidence of active exploitation.
Karma-X[verified]@Karma_X_IncPoC
A researcher disclosed a proof‑of‑concept exploit for the Windows MS‑EVEN RPC vulnerability (CVE‑2025‑29969), but no details on active exploitation, patches, or technical specifics are provided.
Gray Hats@the_yellow_fallPoC
A researcher shared proof‑of‑concept exploit code for CVE‑2025‑29969—a TOCTOU flaw in Windows MS‑EVE RPC that permits remote file writes—and a patch is now available.
Or Yair@oryair1999Exploit
The post announces CVE-2025-29969, a Windows RCE vulnerability, with a PoC and functional exploit code on GitHub, detailing path checks and remote file writes, but does not report active exploitation.
moton@motonPoC
The post announces that a PoC exploit for CVE‑2025‑29969, a Windows MS‑EVEN RPC vulnerability, has been disclosed.
Mr. OS@ksg93rdPoC
SafeBreach Labs disclosed CVE‑2025‑29969, a flaw in the MS‑EVEN protocol that allows low‑privileged users to remotely write arbitrary files, and provided a proof‑of‑concept repository on GitHub.
Pixis@HackAndDoPatch
The post notes a published fix for CVE-2025-29969 by @safebreach, indicates the issue is less critical, and mentions ongoing attempts to exploit the EventLog RPC endpoint.