CVE-2022-29106
CVSS 3.1 Score 7 of 10 (high)
Details
Summary
CVE-2022-29106 is a vulnerability affecting Microsoft's Hyper-V virtualization technology in Windows. This issue grants attackers the ability to elevate their privileges within a Shared Virtual Disk environment. An attacker could exploit this vulnerability by tricking a user into opening a specially crafted file or website, potentially leading to unauthorized system access and data theft. Successful exploitation allows the attacker to gain administrative control over the Hyper-V host machine, posing a significant security risk. Microsoft has released a patch to address this vulnerability, and users are strongly encouraged to install it as soon as possible.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Windows Server 2022
- Microsoft Windows Server 2016
- Microsoft Windows 10
- Microsoft Windows Server 2019
Affected Vendors
- Microsoft