PT-2014-1739 · Microsoft · Windows Task Scheduler+1

James Forshaw

·

Published

2014-09-09

·

Updated

2019-05-13

·

CVE-2014-4074

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Windows Task Scheduler versions prior to the fixed version
Description The issue exists due to improper integrity checks on tasks in the Windows Task Scheduler, allowing an attacker to gain elevated privileges. If successfully exploited, an attacker could run arbitrary code in the security context of the local system, enabling them to install programs, view, change, or delete data, and create new accounts with full user rights.
Recommendations For Windows Task Scheduler, update to the fixed version to resolve the issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-00753
CVE-2014-4074

Affected Products

Windows
Windows Task Scheduler