Impact
A use‑after‑free vulnerability in the Windows File History Service lets an authorized local user trigger a memory mismanagement that can lead to execution of code with elevated privileges. The flaw, classified as CWE‑416, allows the attacker to obtain SYSTEM rights after interacting with the service following a deallocation event.
Affected Systems
The flaw impacts Microsoft Windows 10 versions 1607, 1809, 21H2, and 22H2; Windows 11 versions 23H2, 24H2, 25H2, and 26H1; and Windows Server 2016 and 2019, including their Server Core installations, as listed by the CNA.
Risk and Exploitability
The CVSS score of 7 indicates a high severity issue. No EPSS value is available, so the current exploitation probability is unknown. The attack requires a local attacker with sufficient privileges to interact with the File History Service, limiting the threat surface. The vulnerability is not currently listed in the CISA KEV catalog, suggesting no widespread exploitation has been reported yet.
OpenCVE Enrichment