Skip to main content

Microsoft mystery folder fix might need a fix of its own


Jasper_The_Rasper
Moderator
Forum|alt.badge.img+54

This one weird trick can stop Windows updates dead in their tracks

 

April 24, 2025 By Richard Speed

 

Turns out Microsoft's latest patch job might need a patch of its own, again. This time, the culprit is a mysterious inetpub folder quietly deployed by Redmond, now hijacked by a security researcher to break Windows updates.

The folder, typically c:\inetpub, reappeared on Windows systems in April as part of Microsoft's mitigation for CVE-2025-21204, an exploitable elevation-of-privileges flaw within Windows Process Activation. Rather than patching code directly, Redmond simply pre-created the folder to block a symlink attack path. For many administrators, the reappearance of this old IIS haunt raised eyebrows, especially since the mitigation did little beyond ensuring the folder existed.

 

>>Full Article<<

0 replies

Be the first to reply!

Reply