CVE-2022-29135
CVSS 2.0 Score 6.9 of 10 (medium)
Details
Summary
CVE-2022-29135 is a newly disclosed vulnerability affecting Windows Cluster Shared Volumes (CSV). This elevation of privilege issue grants unauthorized users the ability to escalate their privileges and potentially gain full control of the affected system. Attackers can exploit this vulnerability by manipulating specific CSV file attributes, which can lead to the execution of arbitrary code with higher privileges. This vulnerability poses a serious risk to Windows systems and demands immediate attention from organizations and individuals to apply available patches.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows Server 2012
- Microsoft Windows Server 2016
- Windows Server 2022
- Microsoft Windows Server 2019
- Microsoft Windows Server 2012 R2
Affected Vendors
- Microsoft