CVE-2016-0151

Microsoft Windows CSRSS Security Feature Bypass Vulnerability

7.8
CVSS 3.1
62.9 %
EPSS (current)
2022-03-28
KEV addition
Yes
Ransomware

Timeline

Publication, first public exploit and KEV addition on a day axis.

Key facts

Vendor / product: Microsoft / Client-Server Run-time Subsystem (CSRSS)

Published: 2016-04-12 · Due (CISA): 2022-04-18

CWE: CWE-269 · EU list: no

Exploit references (metadata only)

SourceReferenceTitleDate
exploitdb39740Microsoft Windows - CSRSS BaseSrvCheckVDM Session 0 Process Creation Privilege Escalation (MS16-048)2016-04-27

References only — no downloads or instructions.

Sources