Microsoft Windows Server 2016
cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*
This vulnerability is being actively exploited in the wild.
A use-after-free vulnerability has been identified in the Windows Win32 Kernel Subsystem, allowing an authorized attacker to locally elevate privileges. This vulnerability requires exploitation of a race condition to gain SYSTEM privileges.
Exploitation of this vulnerability leads to unauthorized privilege escalation, allowing an attacker to gain SYSTEM privileges.
Users can apply the security updates provided in KB5053594, KB5053618, KB5053887, KB5053886, KB5053620, KB5053888, and KB5053995 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.