Impact
Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over a network. The flaw arises when the NTFS file system parses certain control fields and fails to enforce proper bounds checks, resulting in memory corruption. The resulting escalation enables the attacker to gain higher privilege levels on the affected host, potentially compromising the entire system’s security.
Affected Systems
Microsoft Windows 10 versions 1607, 1809, 21H2 and 22H2; Windows 11 versions 23H2 to 26H1; and Windows Server 2012 through 2025, including Server Core installations. These build numbers are directly listed by the CNA as vulnerable, covering both 32‑bit and 64‑bit architectures.
Risk and Exploitability
The CVSS score of 8.0 indicates high severity, yet no EPSS score is reported, suggesting limited public exploitation data. The flaw is not in the CISA KEV catalog, so no known widespread attacks are documented. Because the vulnerability requires that the attacker already has network access to the target and can influence NTFS operations, it is considered moderately difficult to exploit in the wild. The result is a local privilege escalation to a higher account level.
OpenCVE Enrichment