Executive brief
Windows Server is a foundational operating system used to host enterprise applications and services. A use-after-free vulnerability allows an authenticated local user to execute code with elevated privileges, potentially gaining full control of the server and the business-critical systems it hosts.
Technical details
A use-after-free vulnerability in Windows Server allows an authorized local attacker to elevate privileges. The flaw is in memory management where a freed object is accessed again, potentially allowing code execution. Exploitation requires local access and existing authentication; the attacker cannot exploit this remotely. A successful exploit grants the attacker system-level privileges, potentially compromising the entire server and its hosted applications. Microsoft has released security updates to address this issue.
Affected products
- Microsoft Windows Server
Timeline
- 2026-09-08: disclosed