Impact
The vulnerability is an integer overflow or wraparound in the Windows Kernel that allows an attacker with local access to bypass privilege checks. It falls under CWE‑190, which describes improper handling of integer values leading to out‑of‑bounds memory access, and can be exploited to write beyond intended memory bounds, giving the attacker administrative rights without additional authentication.
Affected Systems
Affected systems include Microsoft Windows 10 versions 1607, 1809, 21H2, and 22H2; Windows 11 versions 24H2, 25H2, and 26H1; and all Windows Server editions from Server 2012 through Server 2025, including Server Core installations.
Risk and Exploitability
The CVSS score of 7.8 indicates moderate‑to‑high severity, while the EPSS score of less than 1% shows a low current likelihood of exploitation. The issue is local and is not listed in the CISA KEV catalog, suggesting limited exposure at present, yet an attacker who can execute code locally can elevate privileges to administrative levels.
OpenCVE Enrichment