This script is Copyright (C) 2016-2017 Tenable Network Security, Inc.
The remote host is affected by a security feature bypass
The remote Windows host is missing a security update. It is,
therefore, affected by a security feature bypass vulnerability in the
Client-Server Run-time Subsystem (CSRSS) due to improper management of
process tokens in memory. A local attacker can exploit this
vulnerability, via a specially crafted application, to escalate
privileges and execute arbitrary code as an administrator.
See also :
Microsoft has released a set of patches for Windows 2012, 8.1, RT 8.1,
2012 R2, and 10.
Risk factor :
High / CVSS Base Score : 7.2
CVSS Temporal Score : 5.6
Public Exploit Available : true