You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
exfat vulnerability
About this tag
The exfat vulnerability tag covers security issues in Microsoft's implementation of the exFAT file system on Windows. The primary content discusses CVE-2026-25174, a local privilege escalation vulnerability caused by an out-of-bounds read. This flaw allows an authorized local attacker to elevate privileges to a higher account on affected systems. Published in March 2026, it carries a CVSS v3.1 base score of 7.8. Discussions focus on the technical details of the vulnerability, its impact on Windows systems, and potential mitigation strategies. The tag is relevant for IT professionals and security researchers monitoring Windows file system vulnerabilities.
Microsoft has cataloged a new local elevation-of-privilege (EoP) vulnerability in the Windows Extensible File Allocation Table (exFAT) implementation — tracked as CVE-2026-25174 — an out‑of‑bounds read that Microsoft says can allow an authorized local attacker to escalate privileges to a higher...