HIGH
CVE-2022-22047
CVSS
7.8
KEV
Description
Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
Summary dbcve.org
CVE-2022-22047 is an elevation of privilege vulnerability in the Windows Client Server Run-time Subsystem (CSRSV), a core Windows operating system process. The vulnerability allows a local authenticated attacker to gain elevated system or administrator privileges by exploiting a flaw in CSRSS handling of certain operations.
Mitigation
Apply the Microsoft security update for CVE-2022-22047 via Windows Update or deploy the corresponding patch through enterprise patch management systems.
Weakness (CWE)
CWE-426
EPSS Score
18.77%
Probability of exploitation in next 30 days
97.2th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.