Windows Common Log File System Driver Elevation of Privilege Vulnerability
Published: 2022-09-13
Microsoft addresses 62 CVEs in its September 2022 Patch Tuesday release, including five critical flaws.
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-37969
https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-136a
https://therecord.media/fbi-says-bianlian-based-in-russia-switching-tactics
https://securelist.com/windows-clfs-exploits-ransomware/111560/
https://www.tenable.com/cyber-exposure/tenable-2022-threat-landscape-report
https://www.tenable.com/blog/microsofts-february-2023-patch-tuesday-addresses-75-cves-cve-2023-23376
https://www.tenable.com/blog/microsofts-september-2022-patch-tuesday-addresses-62-cves-cve-2022-37969
Source: Mitre, NVD
Updated: 2025-02-18
Known Exploited Vulnerability (KEV)
Base Score: 6.8
Vector: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C
Severity: Medium
Base Score: 7.8
Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity: High
EPSS: 0.06917