Impact
The vulnerability is a heap-based buffer overflow in the Windows Event Logging Service that permits an unauthenticated attacker to execute arbitrary code over a network. This can lead to compromise of confidentiality, integrity, and availability. It is categorized under CWE‑122.
Affected Systems
Microsoft Windows 10 versions 1607, 1809, 21H2, 22H2; Windows 11 versions 23H2, 24H2, 25H2, 26H1; Windows Server 2012, 2012 R2, 2016, 2019, 2022, 2025, including all Server Core installations.
Risk and Exploitability
The CVSS score of 8.8 indicates a high severity level. The EPSS score is less than 1% and the vulnerability is not listed in the CISA KEV catalog, indicating no publicly known exploits. The likely attack vector is remote, inferred from the description which cites code execution over a network; the attacker would need to deliver a specially crafted payload to the Event Logging Service via its remote interface. Despite the low EPSS, the high severity warrants prompt attention.
OpenCVE Enrichment