CVE-2024-49039: Microsoft Windows Task Scheduler Privilege Escalation
Microsoft Windows Task Scheduler Privilege Escalation Vulnerability. Microsoft Windows Task Scheduler contains a privilege escalation vulnerability that can allow an attacker-provided, local application to escalate privileges outside of its AppContainer, and access privileged RPC functions.
- CISA KEV-listed (remediation due 2024-12-03)
- used in ransomware campaigns
- EPSS 65.0% (98.5% percentile)