HIGH

CVE-2021-43226

Microsoft Windows 10 1507 2021-12-15 CVSS v3.1
CVSS
7.8
KEV

Description

Windows Common Log File System Driver Elevation of Privilege Vulnerability

Summary dbcve.org

A local privilege escalation vulnerability exists in the Windows Common Log File System (CLFS) driver. An authenticated attacker with local access can exploit this to gain elevated (SYSTEM) privileges on the affected Windows system.

Mitigation

Apply the Microsoft security update for CVE-2021-43226, which patches the CLFS driver vulnerability. Prioritize patching domain controllers and servers given the privilege escalation risk.

Patch Commit

EPSS Score

3.07%
Probability of exploitation in next 30 days
87.1th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE