Executive brief
A security vulnerability exists in the Windows Network Policy Server, a component used to manage network access and authentication. An unauthorized attacker could exploit this flaw over the network to access sensitive information or cause service disruptions. This could potentially allow an attacker to gain insights into network configurations or impact the availability of authentication services.
Technical details
This vulnerability is classified as an out-of-bounds read (CWE-125) within the SNMP implementation of the Windows Network Policy Server (NPS). The flaw is triggered when the component improperly handles specially crafted SNMP packets, allowing an unauthenticated attacker to read data beyond the intended buffer. While the primary impact is information disclosure, the provided CVSS vector (A:H) suggests the vulnerability may also lead to a high impact on availability, such as a service crash. The attack can be executed remotely over the network without user interaction or prior authentication. Microsoft has released security updates to address this issue across affected Windows and Windows Server versions.
Affected products
- Microsoft Windows 10 1607, 1809, 21H2, 22H2
- Microsoft Windows 11 24H2, 25H2, 26H1
- Microsoft Windows Server 2012 All editions
Timeline
- 2026-07-14: disclosed
- 2026-07-14: advisory