Impact
The vulnerability arises from an error in the authentication algorithm used by the Windows SMB Server. An attacker who has authorized or sufficient access across a network can exploit the flaw to elevate privileges, potentially gaining system‑level rights on the host and thereby compromising the confidentiality, integrity, or availability of the machine.
Affected Systems
Affected operating systems include Microsoft Windows 10 versions 21H2 and 22H2, Windows 11 versions 24H2, 25H2, and 26H1, as well as Windows Server 2022 and 2025, including Server Core installations. All variants enumerated in the provided CPE entries are vulnerable.
Risk and Exploitability
The CVSS score of 8.8 marks the flaw as high severity, while the EPSS score of less than 1% indicates a low probability of active exploitation. The vulnerability is not listed in the CISA KEV catalog. Based on the description, it is inferred that the attack vector is a network‑based SMB request originating from an attacker who already has authorized access to the host; the flaw allows privilege escalation once that request reaches the SMB Server.
OpenCVE Enrichment