Impact
Due to an update, the detailed CVE descriptor is not available here. The earlier description stated that a defect in Windows Secure Boot permits an authorized user to bypass the feature locally, allowing unsigned or malicious code to load during system boot. The principal impact is therefore the loss of the Secure Boot integrity guarantee. The extent of any subsequent privilege escalation or persistence is not specified in the provided description, so the precise downstream impact remains uncertain.
Affected Systems
Microsoft Windows 10 versions 1607, 1809, 21H2, 22H2, Microsoft Windows 11 versions 23H2, 24H2, 25H2, 26H1, and the corresponding Windows Server releases 2012, 2012 R2, 2016, 2019, 2022, and 2025 are affected. These include both standard and server‑core installations on x86, x64, ARM64, and related architectures as specified by the vendor's advisories.
Risk and Exploitability
The CVSS score of 7.9 indicates a moderate‑to‑high severity. The EPSS score of 1% reflects a low probability of exploitation at this time. The vulnerability is not listed in CISA's KEV catalog, suggesting it has not yet been leveraged in publicly known attacks. The attack vector is local, requiring the attacker to have some level of authorized access to the system. If the flaw is successfully triggered, the attacker could bypass Secure Boot, potentially leading to higher‑privilege activities (this escalation is inferred). The CVE is associated with CWE‑1329, an insecure default configuration issue, which further underscores the importance of correct Secure Boot policy settings.
OpenCVE Enrichment