Impact
Heap‑based buffer overflow in Windows Network File System (NFS) allows an unauthorized attacker to execute arbitrary code from a remote network location. The flaw can be triggered by sending specially crafted data to an exposed NFS service, enabling the attacker to take control of the target system with the same privileges as the NFS service process. Successful exploitation would compromise confidentiality, integrity, and availability of the affected machine, potentially facilitating further lateral movement or data exfiltration.
Affected Systems
Microsoft Windows 10 versions 1607, 1809, 21H2 and 22H2; Windows 11 versions 23H2, 24H2, 25H2, 26H1; and Microsoft Windows Server releases from 2012, 2012 R2, 2016, 2019, 2022 and 2025, including all Server Core installations. Any system running these operating systems with the NFS service enabled and exposed to a network is potentially vulnerable.
Risk and Exploitability
The CVSS score is 8.8, indicating high severity. The EPSS score is below 1 %, suggesting the probability of exploitation is currently low, but the vulnerability remains a serious risk if the affected service is reachable from untrusted networks. The vulnerability is not yet listed in the CISA KEV catalog. An attacker who can reach the NFS service over the network can trigger the overflow and execute arbitrary code remotely, making this a high‑risk remote code execution flaw.
OpenCVE Enrichment