CVE-2026-69340: Windows NTFS Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over a network.
Other sources
Windows NTFS Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Remediation
Event History
Frequently Asked Questions
Who is exposed to this vulnerability?
Systems running the listed Microsoft Windows 10, Windows 11, or Windows Server versions are in scope. Exploitation is described as occurring over a network, so reachable systems should be prioritized for review.
What access and conditions does an attacker need?
The attacker must already be authorized and must be able to interact with the affected system over the network. Successful exploitation also requires user interaction and is rated as high complexity.
What is the likely impact of successful exploitation?
A successful attacker can elevate privileges. The supplied vector rates confidentiality, integrity, and availability impact as high.
Is this likely to be exploited without any user involvement?
No. The provided CVSS vector specifies user interaction is required.