Known Exploited Vulnerability: CVE-2016-0099

Microsoft Windows Secondary Logon Service Privilege Escalation Vulnerability

Catalog version: 2026.06.09 Date added: 2022-03-03 Due date: 2022-03-24 CISA catalog

Vendor: Microsoft

Product: Windows

Required action: Apply updates per vendor instructions.

Known ransomware campaign use: Known

Notes: https://nvd.nist.gov/vuln/detail/CVE-2016-0099

CWEs

cvelogic Threat Intelligence