All CVEs
Vulnerability intelligence

CVE-2023-21674

Microsoft Windows Advanced Local Procedure Call (ALPC) Privilege Escalation Vulnerability

Microsoft Windows CWE-416

Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability

CVSS Score
8.8
High
EPSS — Exploit Probability
42%
Riskier than 99% of all CVEs · checked 2026-09-08
Exploitation
Confirmed in the wild
KEV since 2023-01-10
Remediation
Patch available
Federal deadline 2023-01-31
CISA required action

Apply updates per vendor instructions. Deadline for federal agencies: 2023-01-31.

NVD entry Vendor patch PoC / advisory CISA KEV

1 article across 1 outlet · first covered Sep 8, 2026 · latest Sep 8, 2026

Coverage timeline

Related CVEs — Microsoft