CVE-2022-22013
CVSS 3.1 Score 8.8 of 10 (high)
Details
Summary
CVE-2022-22013 is a remote code execution vulnerability affecting Windows Lightweight Directory Access Protocol (LDAP). Maliciously crafted LDAP messages can be used to exploit this flaw, allowing attackers to execute arbitrary code on vulnerable systems. Successful exploitation can result in significant security risks, including unauthorized access, data theft, and system compromise. It is highly recommended that affected systems be updated with the latest Microsoft patches to mitigate this vulnerability. Failure to do so may leave organizations open to potential attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows 7
- Microsoft Windows 10
- Microsoft Windows Server 2012
- Microsoft Windows 8.1
- Microsoft Windows Server 2016
Affected Vendors
- Microsoft