Elevation of Privilege in Windows Cloud Files Mini Filter Driver
CVE-2026-33835

7.8HIGH

What is CVE-2026-33835?

The Windows Cloud Files Mini Filter Driver contains a use-after-free vulnerability that can be exploited by an authorized attacker to elevate their privileges on the local system. This flaw permits unauthorized access to sensitive system resources, thereby allowing potential unauthorized actions that could compromise security and stability. Users are advised to apply the latest security patches to mitigate the risk.

Affected Version(s)

Windows 10 Version 1809 32-bit Systems 10.0.17763.0 < 10.0.17763.8755

Windows 10 Version 21H2 32-bit Systems 10.0.19044.0 < 10.0.19044.7291

Windows 10 Version 22H2 32-bit Systems 10.0.19045.0 < 10.0.19045.7291

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.