February 07, 2022  —  Eric Swotinsky
Incident reports

Patching urged to fix actively exploited Windows vulnerability

A security researcher has disclosed a vulnerability in Microsoft Windows 10, tracked as CVE-2022-21882, that allows an attacker with limited access to a device to easily escalate their privileges to those of an administrator.

Privilege escalation vulnerabilities allow attackers to run tasks that require admin rights on the system, create and delete users with any level of access, and even spread across a network with ease.

This vulnerability was patched by Microsoft to correct a 'Win32k Elevation of Privilege Vulnerability' that was used as a bypass for a previously patched vulnerability (tracked as CVE-2021-1732).

Patching is no longer an occasional task, and requires constant review of systems and software to ensure everything is up to date. Acronis Cyber Protect makes it simple, allowing you to select the software and systems to update, and patch them remotely with the click of a button — all through a single web console.