Home
HIGH: 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C 10.0.14393.0 (custom) before 10.0.14393.8783
affected
10.0.17763.0 (custom) before 10.0.17763.8276
affected
10.0.19044.0 (custom) before 10.0.19044.6809
affected
10.0.19045.0 (custom) before 10.0.19045.6809
affected
10.0.22631.0 (custom) before 10.0.22631.6491
affected
10.0.22631.0 (custom) before 10.0.22631.6491
affected
6.1.7601.0 (custom) before 6.1.7601.28117
affected
6.1.7601.0 (custom) before 6.1.7601.28117
affected
6.0.6003.0 (custom) before 6.0.6003.23717
affected
6.0.6003.0 (custom) before 6.0.6003.23717
affected
6.2.9200.0 (custom) before 6.2.9200.25868
affected
6.2.9200.0 (custom) before 6.2.9200.25868
affected
6.3.9600.0 (custom) before 6.3.9600.22968
affected
6.3.9600.0 (custom) before 6.3.9600.22968
affected
10.0.14393.0 (custom) before 10.0.14393.8783
affected
10.0.14393.0 (custom) before 10.0.14393.8783
affected
10.0.17763.0 (custom) before 10.0.17763.8276
affected
10.0.17763.0 (custom) before 10.0.17763.8276
affected
10.0.20348.0 (custom) before 10.0.20348.4648
affected
Description
Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
Problem types
CWE-822: Untrusted Pointer Dereference
Product status
References
msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20940 (Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability)