← back
CVE-2024-49093highCWE-681

Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability

21Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 8.8epss 0.9%
exploitation probability
0.9%top 41% of all CVEs
observed exploitation
nono source reports it
In short

A flaw in Windows ReFS (Resilient File System) allows an attacker with local access to gain higher privileges on the system. This could let them take control of sensitive functions normally restricted to administrators.

Technical detail

CWE-681 vulnerability in Windows ReFS permits local privilege escalation through improper validation of file system operations. An attacker with local user privileges can exploit this to execute code with elevated system rights, compromising system integrity.

Summary generated and translated by AI from the official description.
Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C