Impact
Improper link resolution before file access in Windows Collaborative Translation Framework allows a local attacker to gain higher privileges. The vulnerability focuses on how the system handles symbolic or relative links when accessing files. This flaw is classed as CWE‑59, indicating unsafe handling of links that can bypass intended access restrictions. A user with authenticated access can craft input that forces the framework to follow a link to a protected file, resulting in a local privilege escalation.
Affected Systems
The impacted operating systems include Windows 10 versions from 1607 through 22H2, Windows 11 versions 23H2 to 26H1, and Windows Server editions from 2012 up to 2025, covering x86, x64, and arm64 architectures as listed in the CNA version data. All these releases incorporate the Collaborative Translation Framework component that contains the vulnerable link‑resolution logic.
Risk and Exploitability
The CVSS base score of 7.8 indicates high severity for local privilege escalation, though the EPSS score of < 1 % suggests a low probability of exploitation at this time. The vulnerability is not currently listed in the CISA KEV catalog, implying no widespread automated exploitation has been reported. The attack requires a legitimate local user context; the attacker can achieve escalation by tricking the framework to follow a crafted link, thereby bypassing normal access checks and gaining elevated rights on the affected machine.
OpenCVE Enrichment