Netskope Threat Labs

OS-WINDOWS Microsoft Windows Client-Server Runtime Subsystem privilege escalation attempt

IPS-SWG

2 SIDs: 60705, 60707

Detects an attempt to exploit CVE-2022-37989 and CVE-2022-37987, a privilege escalation flaw that can grant higher access in Microsoft Windows Client-Server Runtime Subsystem.