HIGH

CVE-2021-36955

Microsoft Windows 10 1507 2021-09-15 CVSS v3.1
CVSS
7.8
KEV

Description

Windows Common Log File System Driver Elevation of Privilege Vulnerability

Summary dbcve.org

CVE-2021-36955 is an elevation of privilege vulnerability in the Windows Common Log File System (CLFS) driver that allows a local attacker to gain elevated SYSTEM-level privileges by exploiting a flaw in kernel-mode driver handling.

Mitigation

Apply the Microsoft security update for CVE-2021-36955 via Windows Update or standalone patch deployment to remediate the CLFS driver vulnerability.

Patch Commit

EPSS Score

4.04%
Probability of exploitation in next 30 days
90.2th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE