Impact
The vulnerability is a heap‑based buffer overflow in the Windows Volume Manager Extension Driver. An attacker with physical presence and authorized privileges can trigger the overflow and execute arbitrary code, potentially compromising confidentiality, integrity, or availability of the system.
Affected Systems
Affected systems include Microsoft Windows 10 (Versions 1607, 1809, 21H2, 22H2), Microsoft Windows 11 (Versions 23H2, 24H2, 25H2, 22H3, 26H1), and Microsoft Windows Server releases 2012, 2016, 2019, 2022, 2025, and the 23H2 edition.
Risk and Exploitability
The CVSS score of 6.2 indicates moderate severity. EPSS is not available, and the vulnerability is not listed in the CISA KEV catalog, suggesting no documented exploitation in the wild. Because the description requires an authorized user with physical access, the likelihood of remote exploitation is low, but the impact of successful exploitation is serious.
OpenCVE Enrichment