Impact
A stack‑based buffer overflow exists in the Windows NTFS component. When triggered by a local authorized user, the flaw allows write beyond a stack boundary, enabling elevation of privileges to an administrative level. The vulnerability is classified as CWE‑121 and can grant an attacker higher rights than intended.
Affected Systems
Microsoft Windows 10 versions 1607, 1809, 21H2, and 22H2; Microsoft Windows 11 versions 24H2, 25H2, and 26H1; Microsoft Windows Server 2012 (standard and Server Core), Windows Server 2012 R2 (both variants), Windows Server 2016, Windows Server 2019, Windows Server 2022, and Windows Server 2025.
Risk and Exploitability
The CVSS score of 7.8 indicates a high severity flaw. The EPSS score of less than 1% suggests that widespread exploitation is unlikely at present. The vulnerability is not listed in the CISA KEV catalog. Based on the description, it is inferred that the attacker must be a logged‑in local user with the appropriate rights to trigger the buffer overflow in NTFS. Consequently, the risk is high for a targeted attacker who can authenticate locally, but the overall likelihood of exploitation remains low in the current threat landscape.
OpenCVE Enrichment