Impact
This vulnerability is a path‑traversal flaw in Windows PowerShell that allows an unauthorized attacker to bypass a built‑in security feature through a network connection. The flaw permits references to directories outside the intended sandbox, thereby undermining the isolation normally provided by PowerShell.
Affected Systems
The affected products include Microsoft Windows 10 (1607, 1809, 21H2, 22H2), Windows 11 (23H2, 24H2, 25H2, 26H1) and Windows Server 2012 to 2025 in various editions. The vulnerability applies to both 32‑bit and 64‑bit builds, as well as ARM64 variants, and affects both full and Server Core installations.
Risk and Exploitability
The CVSS score of 6.5 indicates medium severity. No EPSS score is available, so the likelihood of exploitation is currently unclear, and the KEV status is not listed. The likely attack vector is over a network session that can trigger PowerShell commands. If exploited, it could break out of the restricted directory; the potential for privilege escalation and data exfiltration is inferred from the breach of the sandbox.
OpenCVE Enrichment