Microsoft Task Scheduler CVE-2016-7222 Elevation of Privilege Vulnerability

description-logoDescription

An elevation of privilege vulnerability exists in Task Scheduler when a user creates a task that uses UNC paths. An attacker who successfully exploited this vulnerability could run arbitrary code with elevated system privileges. To exploit the vulnerability, a locally authenticated attacker could use Windows Task Scheduler to schedule a new task with a specially crafted UNC path. This security update addresses the vulnerability by correcting how Task Scheduler handles specially crafted UNC paths.

affected-products-logoAffected Applications

Windows 10
Windows Server 2016

CVE References

CVE-2016-7222