CVE-2023-23376
Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability
CVSS
7.8
High
EPSS
10.9%
p96
KEV
YES
Feb 14, 2023
Exploit Today
79
0-100
Published: Feb 14, 2023 · Last modified: Aug 19, 2026 · CWE-122 · CWE-787
Product
Microsoft / Windows
Vulnerability
Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability
Added to KEV
Feb 14, 2023
Remediate by
Mar 7, 2023
Known ransomware use
Yes
Summary description
Microsoft Windows Common Log File System (CLFS) driver contains an unspecified vulnerability that allows for privilege escalation.
Required action
Apply updates per vendor instructions.
Notes
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2023-23376; https://nvd.nist.gov/vuln/detail/CVE-2023-23376
Windows Common Log File System Driver Elevation of Privilege Vulnerability