Windows CSRSS Vulnerability

Windows CSRSS Vulnerability

A high* level vulnerability related to Windows CSRSS has just published.

Windows CSRSS Vulnerability

The vulnerability is classified as Elevation of Privilege Vulnerability. An attacker who successfully exploited this vulnerability could gain SYSTEM privileges.

Affected Systems

  • Windows Server 2012 R2, Windows Server 2012, Windows RT 8.1, Windows 7, Windows Server 2008 R2 x64, Windows Server 2016, Windows 10, Windows 11, Windows Server 2022, Windows Server 2019

IoC’s

-

Recommended Solution(s)

It is highly recommended to install “Monthly Rollup” or “Security Only” releases listed below according to OS:

https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2022-22047#securityUpdates

CVE / CWE

CVE-2022-22047

Related Website(s)

* Vulnerabilities with a CVSS 3.1 score between 7.0 and 8.9 are evaluated to be “high” whereas vulnerabilities with a CVSS 3.1 score between 9.0 and 10.0 are evaluated to be “critical”.