Impact
A vulnerable out‑of‑bounds read in the Windows Error Reporting component can be triggered by an authorized user running on the machine to gain elevated local privileges. The flaw is a classic memory safety error (CWE‑125) that allows a process running with user rights to read beyond the bounds of an array, potentially leaking sensitive information and facilitating privilege escalation. The impact is confined to the local system but can compromise any accounts that the attacker can elevate to, turning a non‑admin account into an administrator or system level user.
Affected Systems
Affected products include Microsoft Windows 10 from version 1607 through 22H2, Microsoft Windows 11 from 23H2 through 26H1, and Microsoft Windows Server from 2012 up to Server 2025, including both full and Server Core installations. Version details are those enumerated by Microsoft in the CNA affected‑version list.
Risk and Exploitability
The vulnerability has a CVSS score of 7.8, indicating an elevated severity that warrants prompt attention. EPSS is not available, and the issue is not listed in the CISA KEV catalog, so there is no evidence of active exploitation yet; however, the local nature of the attack means an attacker only needs to be authenticated or have a foothold on the system to exploit it. In the absence of a remote attack vector the risk is largely limited to compromised or malicious accounts within the organization.
OpenCVE Enrichment