Impact
An out‑of‑bounds read flaw in Windows NTFS allows an authorized attacker to elevate privileges over a network. The vulnerability enables the attacker to access protected data or execute actions that require higher privileges, potentially leading to the compromise of system integrity and unauthorized control. The weakness is classified as CWE‑125, highlighting the improper bounds checking that can be exploited for privilege escalation.
Affected Systems
Affected products include Microsoft Windows 10 versions 1607, 1809, 21H2, and 22H2; Windows 11 versions 23H2, 24H2, 25H2, and 26H1; and Windows Server releases 2012, 2012 R2, 2016, 2019, 2022, and 2025 with both full and server core installations. These versions run on x86, x64, and ARM64 architectures as specified by the corresponding CPE entries.
Risk and Exploitability
The CVSS score of 8 indicates a high severity, and the EPSS score is not available, suggesting limited public exploitation data. The vulnerability is not listed in the CISA KEV catalog. Based on the description, the likely attack vector is an authorized local or network attacker who has some degree of interaction with the system, such as a remote user with limited file sharing permissions. Exploitation would require the attacker to trigger the NTFS out‑of‑bounds read, which can elevate privileges to perform privileged operations on the affected machine. Given the high CVSS score and potential for privilege escalation, the risk remains significant.
OpenCVE Enrichment