Blogpost: https://whereisk0shl.top/post/break-me-out-of-sandbox-in-old-pipe-cve-2022-22715-windows-dirty-pipe

Named Pipe File System Elevation of Privilege Vulnerability

Published 9 Feb 2022Updated 17 Jun 20263 sources
CVSS 7.8 PoC CANDIDATE

What happened

Named Pipe File System Elevation of Privilege Vulnerability

Affected versions

Windows 10 Version 1809: 10.0.17763.0 through before 10.0.17763.2565 (custom); 10.0.0 through before 10.0.17763.2565 (custom); 10.0.0 through before 10.0.18363.2094 (custom); 10.0.0 through before 10.0.19043.1526 (custom); 10.0.20348.0 through before 10.0.20348.524 (custom); 10.0.0 through before 10.0.19042.1526 (custom); 10.0.0 through before 10.0.22000.493 (custom); 10.0.19043.0 through before 10.0.19044.1526 (custom) Fixed: See vendor advisory.

Why it matters

This source correlation may provide earlier visibility while structured CVE metadata is still being updated.

Detection & mitigation

  • Review the original advisory and validate affected versions.
  • Apply vendor-provided updates or mitigations when available.

Public PoC references