Tampering Vulnerability in Windows Cloud Files Mini Filter Driver by Microsoft
CVE-2026-83991

5.5MEDIUM

Key Information:

Badges

๐Ÿ‘พ Exploit Exists๐ŸŸก Public PoC

What is CVE-2026-83991?

The Windows Cloud Files Mini Filter Driver contains a vulnerability due to missing authentication for critical functions. This flaw allows an unauthorized attacker to perform local tampering, which can impact the integrity of files and data within the affected operating systems, such as Windows 10 and Windows Server 2022. It is essential for users and administrators to address this vulnerability promptly to safeguard their systems against potential exploits.

Affected Version(s)

Windows 10 Version 1809 32-bit Systems 10.0.17763.0 < 10.0.17763.9245

Windows 10 Version 21H2 32-bit Systems 10.0.19044.0 < 10.0.19044.7725

Windows 10 Version 22H2 32-bit Systems 10.0.19045.0 < 10.0.19045.7725

Exploit Proof of Concept (PoC)

PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • ๐ŸŸก

    Public PoC available

  • ๐Ÿ‘พ

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

.