CVE-2022-30171
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Summary
CVE-2022-30171 is a newly disclosed information disclosure vulnerability affecting Microsoft Office. Successful exploitation of this flaw allows an attacker to gain unauthorized access to potentially sensitive information. The vulnerability exists in the way Microsoft Office handles objects in memory, and an attacker can trigger it through specially crafted documents or emails. This issue poses a significant risk to organizations and individuals, as it can lead to data breaches and identity theft. Microsoft has released a patch to address the vulnerability, and it is strongly recommended that users install the update as soon as possible to protect themselves against potential attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft SharePoint Server
Affected Vendors
- Microsoft