CVE Vulnerabilities

CVE-2022-30190

Externally Controlled Reference to a Resource in Another Sphere

Published: Jun 01, 2022 | Modified: Jan 02, 2025
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

A remote code execution vulnerability exists when MSDT is called using the URL protocol from a calling application such as Word. An attacker who successfully exploits this vulnerability can run arbitrary code with the privileges of the calling application. The attacker can then install programs, view, change, or delete data, or create new accounts in the context allowed by the user’s rights. Please see the MSRC Blog Entry for important information about steps you can take to protect your system from this vulnerability.

Weakness

The product uses an externally controlled name or reference that resolves to a resource that is outside of the intended control sphere.

Affected Software

Name Vendor Start Version End Version
Windows_10_1507 Microsoft * 10.0.10240.19325 (excluding)
Windows_10_1607 Microsoft * 10.0.14393.5192 (excluding)
Windows_10_1809 Microsoft * 10.0.17763.3046 (excluding)
Windows_10_20h2 Microsoft * 10.0.19042.1766 (excluding)
Windows_10_21h1 Microsoft * 10.0.19043.1766 (excluding)
Windows_10_21h2 Microsoft * 10.0.19044.1766 (excluding)
Windows_11_21h2 Microsoft * 10.0.22000.739 (excluding)
Windows_7 Microsoft –sp1 (including) –sp1 (including)
Windows_8.1 Microsoft - (including) - (including)
Windows_rt_8.1 Microsoft - (including) - (including)
Windows_server_2008 Microsoft –sp2 (including) –sp2 (including)
Windows_server_2008 Microsoft r2-sp1 (including) r2-sp1 (including)
Windows_server_2012 Microsoft - (including) - (including)
Windows_server_2012 Microsoft r2 (including) r2 (including)
Windows_server_2016 Microsoft * 10.0.14393.5192 (excluding)
Windows_server_2019 Microsoft * 10.0.17763.3046 (excluding)
Windows_server_2022 Microsoft * 10.0.20348.770 (excluding)
Windows_server_20h2 Microsoft * 10.0.19042.1766 (excluding)

References