HIGH

CVE-2022-37969

Microsoft Windows 10 1507 2022-09-13 CVSS v3.1
CVSS
7.8
KEV

Description

Windows Common Log File System Driver Elevation of Privilege Vulnerability

Summary dbcve.org

This is a local privilege escalation vulnerability in the Windows Common Log File System (CLFS) driver. The flaw allows a low-privileged attacker to elevate to SYSTEM privileges on affected Windows systems.

Mitigation

Apply the Microsoft security updates for CVE-2022-37969, which are available through Windows Update or WSUS for enterprise environments.

Patch Commit

Weakness (CWE)

CWE-787 Out-of-bounds Write

EPSS Score

28.28%
Probability of exploitation in next 30 days
98.1th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE