Impact
A missing authorization check in the Windows SMB Server enables an attacker who already has local access to discover confidential data. The vulnerability does not provide remote exploitation; it requires the attacker to be authenticated or otherwise have local system privileges. The weakness is classified as CWE-862, reflecting a lack of proper authorization controls.
Affected Systems
The flaw is present in multiple Windows operating systems, including Windows 10 versions 1607, 1809, 21H2, and 22H2, Windows 11 versions 23H2, 24H2, 25H2, 26H1, as well as Windows Server releases 2016, 2019, 2022, and 2025. The specific affected editions encompass both standard and Server Core installations across these releases.
Risk and Exploitability
The CVSS base score of 5.5 indicates a moderate severity, with limited impact in terms of confidentiality and integrity. The EPSS score is not available, and the vulnerability is not listed in the CISA KEV catalog. Because the attack vector is local, a threat actor must already have authenticated access or otherwise be able to run code on the target machine. Once inside, an attacker could pull sensitive information from the SMB server that would normally be protected by authorization checks.
OpenCVE Enrichment