Impact
The vulnerability is an improper access control that permits an authorized local user to bypass the Windows Secure Boot feature. By manipulating the Secure Boot configuration, the attacker can disable or circumvent the boot‑time verification performed by the firmware.
Affected Systems
Affected workloads are Microsoft Windows 11 versions 24H2, 25H2, and 26H1 on both ARM64 and x64 architectures, along with Windows Server 2025, including Server Core installations.
Risk and Exploitability
The CVSS score is 7.9 and the EPSS score is <1%, indicating a low probability of exploitation. The vulnerability is not listed in the CISA KEV catalog. The attack vector is local and requires authenticated access to the system. The potential impact is limited to the ability to bypass Secure Boot enforcement, which could allow the installation of unsigned code or firmware during the boot process.
OpenCVE Enrichment