HIGH

CVE-2022-22047

Microsoft Windows 10 1507 2022-07-12 CVSS v3.1
CVSS
7.8
KEV

Description

Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability

Summary dbcve.org

CVE-2022-22047 is an elevation of privilege vulnerability in the Windows Client Server Run-time Subsystem (CSRSV), a core Windows operating system process. The vulnerability allows a local authenticated attacker to gain elevated system or administrator privileges by exploiting a flaw in CSRSS handling of certain operations.

Mitigation

Apply the Microsoft security update for CVE-2022-22047 via Windows Update or deploy the corresponding patch through enterprise patch management systems.

Patch Commit

Weakness (CWE)

CWE-426

EPSS Score

18.77%
Probability of exploitation in next 30 days
97.2th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE