Impact
An out‑of‑bounds read vulnerability exists in the Windows VOLSNAP.SYS kernel driver. Over the network, an attacker who has authorized access can trigger the flaw to gain elevated privileges, effectively allowing non‑administrative users to execute code with higher rights. This flaw is a classic buffer overread issue (CWE‑125) and can compromise the confidentiality, integrity, and availability of the affected systems.
Affected Systems
Microsoft Windows 10 versions 1607, 1809, 21H2, 22H2; Windows 11 versions 23H2, 24H2, 25H2, 26H1; Windows Server editions 2012, 2012 R2, 2016, 2019, 2022, and 2025 (including both Server Core and standard installations).
Risk and Exploitability
The CVSS score of 8 indicates a high severity. Although EPSS data is not provided, the vulnerability can be exploited by an authenticated attacker over the network, which elevates the threat of widespread exposure. The missing KEV status means the vulnerability is not yet listed in the CISA Known Exploited Vulnerabilities catalog, but it remains a significant security concern for affected Windows environments.
OpenCVE Enrichment