CVE-2024-49039: Microsoft Windows Task Scheduler Privilege Escalation Vulnerability
High severity, CVSS 8.8. Actively exploited: in CISA KEV since 2024-11-12. EPSS: 14.2% chance of exploitation in the next 30 days.
Windows Task Scheduler Elevation of Privilege Vulnerability
Affected products
- Microsoft Windows 10 1507: before 10.0.10240.20826 (fixed in 10.0.10240.20826)
- Microsoft Windows 10 1607: before 10.0.14393.7515 (fixed in 10.0.14393.7515)
- Microsoft Windows 10 1809: before 10.0.17763.6532 (fixed in 10.0.17763.6532)
- Microsoft Windows 10 21h2: before 10.0.19044.5131 (fixed in 10.0.19044.5131)
- Microsoft Windows 10 22h2: before 10.0.19045.5131 (fixed in 10.0.19045.5131)
- Microsoft Windows 11 22h2: before 10.0.22621.4460 (fixed in 10.0.22621.4460)
- Microsoft Windows 11 23h2: before 10.0.22631.4460 (fixed in 10.0.22631.4460)
- Microsoft Windows 11 24h2: before 10.0.26100.2314 (fixed in 10.0.26100.2314)
- Microsoft Windows Server 2016: before 10.0.14393.7515 (fixed in 10.0.14393.7515)
- Microsoft Windows Server 2019: before 10.0.17763.6532 (fixed in 10.0.17763.6532)
- Microsoft Windows Server 2022: before 10.0.20348.2849 (fixed in 10.0.20348.2849)
- Microsoft Windows Server 2022 23h2: before 10.0.25398.1251 (fixed in 10.0.25398.1251)
- Microsoft Windows Server 2025: before 10.0.26100.2314 (fixed in 10.0.26100.2314)
Published 2024-11-12. Last modified 2026-08-04.