← back
CVE-2021-36955

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVSS 7.8 HIGHEPSS 3.1%● KEV
In short

A flaw in Windows' Common Log File System driver allows an attacker with local access to bypass security restrictions and gain higher privileges on the system. This could let them take full control of the computer.

Technical detail

An elevation of privilege vulnerability in the Windows CLFS driver (Kernel component) that can be exploited via local access to escalate from a lower-privileged user context to system-level privileges. Requires prior local code execution; successful exploitation results in SYSTEM-level access.

Summary generated and translated by AI from the official description.
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →