HIGH
CVE-2022-37969
CVSS
7.8
KEV
Description
Windows Common Log File System Driver Elevation of Privilege Vulnerability
Summary dbcve.org
This is a local privilege escalation vulnerability in the Windows Common Log File System (CLFS) driver. The flaw allows a low-privileged attacker to elevate to SYSTEM privileges on affected Windows systems.
Mitigation
Apply the Microsoft security updates for CVE-2022-37969, which are available through Windows Update or WSUS for enterprise environments.
Weakness (CWE)
CWE-787
Out-of-bounds Write
EPSS Score
28.28%
Probability of exploitation in next 30 days
98.1th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.