CVE-2024-49039CISA KEV
Microsoft Windows Task Scheduler Privilege Escalation Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
Microsoft Windows Task Scheduler contains a privilege escalation vulnerability that can allow an attacker-provided, local application to escalate privileges outside of its AppContainer, and access privileged RPC functions.
- Product
- Windows
- Added to KEV
- 12 Nov 2024
- Federal remediation due
- 3 Dec 2024
- Known ransomware use
- Yes