← back
CVE-2021-43226

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVSS 7.8 HIGHEPSS 3.1%● KEV
In short

A flaw in Windows' Common Log File System Driver allows a local attacker to gain higher privileges on the system. An authenticated user can exploit this to run malicious code with elevated permissions.

Technical detail

A privilege escalation vulnerability in the CLFS driver can be exploited by a local attacker with user-level access to execute arbitrary code with kernel privileges. The attack requires local code execution as a prerequisite and results in complete system compromise via kernel-level access.

Summary generated and translated by AI from the official description.
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →