CVE-2022-30171

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Jun 15, 2022
Updated: Jan 2, 2025

Summary

CVE-2022-30171 is a newly disclosed information disclosure vulnerability affecting Microsoft Office. Successful exploitation of this flaw allows an attacker to gain unauthorized access to potentially sensitive information. The vulnerability exists in the way Microsoft Office handles objects in memory, and an attacker can trigger it through specially crafted documents or emails. This issue poses a significant risk to organizations and individuals, as it can lead to data breaches and identity theft. Microsoft has released a patch to address the vulnerability, and it is strongly recommended that users install the update as soon as possible to protect themselves against potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft SharePoint Server

Affected Vendors

  • Microsoft