Elevation of Privilege Vulnerability in Windows Projected File System
CVE-2026-34340

7HIGH

What is CVE-2026-34340?

A use after free vulnerability in the Windows Projected File System can permit an authorized attacker to elevate their local system privileges. This vulnerability poses a risk as it could potentially allow attackers to exploit the flaw to execute unauthorized commands or change system settings, leading to further exploitation of user accounts and system integrity.

Affected Version(s)

Windows 10 Version 1809 32-bit Systems 10.0.17763.0 < 10.0.17763.8755

Windows 10 Version 21H2 32-bit Systems 10.0.19044.0 < 10.0.19044.7291

Windows 10 Version 22H2 32-bit Systems 10.0.19045.0 < 10.0.19045.7291

References

CVSS V3.1

Score:
7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.