CVE-2026-69372
Analyzed Analyzed - Analysis Complete

Out-of-Bounds Read in Windows Network File System

Vulnerability report for CVE-2026-69372, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-08

Last updated on: 2026-09-24

Assigner: Microsoft Corporation

Description

Out-of-bounds read in Windows Network File System allows an authorized attacker to deny service over a network.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-08
Last Modified
2026-09-24
Generated
2026-09-29
AI Q&A
2026-09-09
EPSS Evaluated
2026-09-27
NVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
microsoft windows_network_file_system *

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-125 The product reads data past the end, or before the beginning, of the intended buffer.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This is an out-of-bounds read vulnerability in Windows Network File System. An authorized attacker can exploit it to cause a denial of service over a network by reading memory outside the intended buffer.

Impact Analysis

The impact includes potential network service disruption. An attacker could crash systems or degrade performance by triggering the out-of-bounds read in the file system component.

Mitigation Strategies

Apply the latest security updates from Microsoft for Windows Network File System to patch the out-of-bounds read vulnerability.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-69372. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart