Impact
The CVE describes an out‑of‑bounds read in the Windows Event Logging Service that can allow an unauthorized attacker to execute code on the host. This flaw can lead to arbitrary code execution and compromises confidentiality, integrity, and availability of the affected system. The exact privilege level granted by the exploit is not disclosed, but the description indicates that the attacker is not required to have local access, only remote connectivity.
Affected Systems
Affected systems include Microsoft Windows 10 build 1607, 1809, 21H2, and 22H2; Windows 11 versions 23H2, 24H2, 25H2, and 26H1; and Windows Server 2012, 2012 R2, 2016, 2019, 2022, and 2025, including their Server Core installations.
Risk and Exploitability
The CVSS score of 8.8 classifies this as high severity. EPSS is less than 1 % and the vulnerability is not listed in the CISA KEV catalog, which indicates that publicly known exploits are rare, yet the high score suggests that the flaw can be dangerous if discovered. The likely attack vector requires the attacker to reach the Windows Event Logging Service over the network; based on the description, it is inferred that remote hosts can trigger the out‑of‑bounds read and potentially gain code execution, though the specific privilege escalation is not detailed. Operators should treat this as a high‑risk issue and prioritize remediation.
OpenCVE Enrichment