CVE-2022-37981
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Summary
CVE-2022-37981 is a newly identified vulnerability that affects the Windows Event Logging Service. This issue permits an attacker to cause a Denial of Service (DoS) condition by sending specially crafted event logs to the targeted system. The vulnerability could lead to the service crashing or becoming unresponsive, resulting in a disruption of normal system operations. Exploitation of this vulnerability does not provide attackers with direct system access but can cause significant inconvenience and potential downtime. Microsoft has released a patch to address this issue, and it is strongly recommended that users install the update as soon as possible to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows 7
- Microsoft Windows Server 2008
- Microsoft Windows 10
- Microsoft Windows Server 2012
- Microsoft Windows 8.1
Affected Vendors
- Microsoft