Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
Published:
Microsoft addresses 84 CVEs in its July 2022 Patch Tuesday release, including four critical flaws and one zero day that has been exploited in the wild.
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-22047
https://securelist.com/windows-vulnerabilities/112232/
https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-215a
https://www.mandiant.com/resources/blog/zero-days-exploited-2022
https://www.tenable.com/cyber-exposure/tenable-2022-threat-landscape-report
https://www.tenable.com/blog/aa23-215a-2022s-top-routinely-exploited-vulnerabilities
https://www.tenable.com/blog/microsofts-july-2022-patch-tuesday-addresses-84-cves-cve-2022-22047
Source: Mitre, NVD
Published: 2022-07-12
Updated: 2024-08-14
Known Exploited Vulnerability (KEV)
Base Score: 7.2
Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C
Severity: High
Base Score: 7.8
Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS: 0.00738