Impact
The vulnerability is a buffer over-read in the Windows NTFS filesystem that enables an attacker with local authorized access to execute arbitrary code on the affected host. The documented impact is local code execution, which could allow the attacker to run malicious code with the privileges of the authenticated account.
Affected Systems
Affected Windows operating systems include Microsoft Windows 10 versions 1607, 1809, 21H2, and 22H2; Windows 11 versions 23H2, 24H2, 25H2, and 26H1; and Windows Server releases 2012, 2012 R2, 2016, 2019, 2022, and 2025, covering both standard and Server Core installations.
Risk and Exploitability
The CVSS score of 7.8 indicates high severity. EPSS data is unavailable, and the vulnerability is not listed in the CISA KEV catalog, implying no confirmed exploits in the wild. The likely attack vector is local execution by an authenticated user, as inferred from the description that the attacker must be authorized. Exploitation would therefore require local privileged access and the ability to trigger the buffer over-read to execute code.
OpenCVE Enrichment