HIGH
CVE-2023-28252
CVSS
7.8
KEV
Description
Windows Common Log File System Driver Elevation of Privilege Vulnerability
Summary dbcve.org
An elevation of privilege vulnerability in the Windows Common Log File System (CLFS) driver allows a local attacker to gain SYSTEM-level privileges by exploiting a flaw in the kernel-mode driver.
Mitigation
Apply the Microsoft security update for CVE-2023-28252 (April 2023 Patch Tuesday) to all affected Windows systems; prioritize endpoint and server systems where untrusted local users may have access.
Weakness (CWE)
CWE-122
Heap-based Buffer Overflow
CWE-787
Out-of-bounds Write
EPSS Score
48.97%
Probability of exploitation in next 30 days
98.8th percentile
References
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-28252
Patch, Vendor Advisory
http://packetstormsecurity.com/files/174668/Windows-Common-Log-File-System-Driver-clfs.sys-Privilege-Escalation.html
Exploit, Third Party Advisory, VDB Entry
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2023-28252
US Government Resource
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.