Impact
The CVE description notes no CWE is assigned. This vulnerability can be classified under CWE‑1329 due to its nature as a flaw that allows an authorized local attacker to bypass the Secure Boot security feature. The flaw undermines boot integrity, potentially allowing unsigned or malicious firmware or kernel components to load, thereby compromising system confidentiality and integrity.
Affected Systems
Microsoft Windows 10 (versions 1607, 1809, 21H2, 22H2), Windows 11 (versions 23H2, 24H2, 25H2, 26H1), and Windows Server 2012, 2012 R2, 2016, 2019, 2022, 2025. Both standard and server‑core installations on x86, x64, and ARM64 architectures are impacted as listed by the vendor.
Risk and Exploitability
The CVSS score of 7.9 indicates moderate‑to‑high severity, while the EPSS score of 1% points to a low current probability of exploitation. The vulnerability is not listed in the CISA KEV catalog. Based on the description, it is inferred that the flaw requires local, authorized access; once triggered, the attacker can compromise the Secure Boot mechanism, potentially enabling further privileged attacks. The known CWE‑1329 highlights the risk stemming from insecure default configuration settings.
OpenCVE Enrichment