CVE-2016-0151: Microsoft Windows CSRSS Security Feature Bypass
Microsoft Windows CSRSS Security Feature Bypass Vulnerability. The Client-Server Run-time Subsystem (CSRSS) in Microsoft mismanages process tokens, which allows local users to gain privileges via a crafted application.
- CISA KEV-listed (remediation due 2022-04-18)
- used in ransomware campaigns
- EPSS 32.4% (97.0% percentile)