Impact
A heap-based buffer overflow flaw exists in the Microsoft Standard XPS component, which can be triggered by an authenticated user through a network interface. Exploitation of this flaw grants elevated local privileges, allowing the attacker to upload and execute code with higher authority than their current session. The vulnerability is a classic buffer overrun (CWE-122) that facilitates privilege escalation within the affected operating system.
Affected Systems
Affected environments include multiple Windows 10 releases (1607, 1809, 21H2, 22H2), several Windows 11 updates (23H2, 24H2, 25H2, 26H1), and Windows Server editions from 2012 through 2025, including Server Core installations. The flaw resides in the Standard XPS service, which is present across both desktop and server product lines.
Risk and Exploitability
The CVSS base score of 7.1 reflects a medium-to-high severity within the affected systems. The EPSS score is not available, so the current exploitation probability remains uncertain. The vulnerability is not listed in CISA’s KEV catalog, suggesting no known widespread exploitation at the time of this analysis. Likely required conditions include network access to the vulnerable service and local user authentication, meaning that a threat actor would need to be a legitimate user or supply malicious payload through a documented interface. If leveraged, the resulting privilege escalation could compromise data confidentiality, integrity, and availability on the compromised host.
OpenCVE Enrichment