CVE-2022-30141
CVSS 2.0 Score 9.3 of 10 (high)
Details
Summary
CVE-2022-30141 is a remote code execution vulnerability affecting Windows Lightweight Directory Access Protocol (LDAP). Attackers can exploit this weakness by sending maliciously crafted LDAP messages to a targeted system, resulting in arbitrary code execution with the privileges of the LDAP service. Successful exploitation could potentially lead to significant security compromises, including unauthorized access and data theft. Microsoft released a security update to address this issue, and it is strongly recommended that all affected systems be promptly patched to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows 7
- Microsoft Windows Server 2008
- Microsoft Windows 10
- Microsoft Windows Server 2012
- Microsoft Windows 8.1
Affected Vendors
- Microsoft