Impact
External control of the file name or path in Windows Shell allows an authorized attacker to elevate privileges locally. The weakness is associated with input validation failures (CWE-73).
Affected Systems
Microsoft Windows 11 versions 23H2, 24H2, 25H2, 26H1 and Windows Server 2025 (both standard and core installations) are vulnerable.
Risk and Exploitability
The CVSS score is 7.0, indicating a high impact for an attacker who succeeds. EPSS data is not available, and the vulnerability is not listed in the CISA KEV catalog. The description indicates that an authorized local user can manipulate a file name or path used by Windows Shell to achieve privilege escalation.
OpenCVE Enrichment