⚠ Exploited in the wild
Exploitation observed in the wild. Not yet on CISA KEV.

CVE-2022-35803Microsoft Windows 10 Version 1507 vulnerability

5 documents5 sources
Severity
7.8HIGHNVD
EPSS
1.6%
top 18.15%
CISA KEV
Not in KEV
Exploit
Exploited in wild
Active exploitation observed
Timeline
PublishedSep 13
Latest updateSep 14

Description

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages19 packages

CVEListV5microsoft/windows_76.1.06.1.7601.26115
CVEListV5microsoft/windows_8.16.3.06.3.9600.20571
CVEListV5microsoft/windows_server_20126.2.9200.06.2.9200.23865
CVEListV5microsoft/windows_server_201610.0.14393.010.0.14393.5356
CVEListV5microsoft/windows_server_201910.0.17763.010.0.17763.3406

🔴Vulnerability Details

3
GHSA
GHSA-632j-4r76-qfq7: Windows Common Log File System Driver Elevation of Privilege Vulnerability2022-09-14
CVEList
Windows Common Log File System Driver Elevation of Privilege Vulnerability2022-09-13
VulnCheck
Windows Common Log File System Driver Elevation of Privilege Vulnerability2022

📋Vendor Advisories

1
Microsoft
Windows Common Log File System Driver Elevation of Privilege Vulnerability2022-09-13
CVE-2022-35803 — Microsoft vulnerability | cvebase