CVE-2022-37981

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Oct 11, 2022
Updated: Jan 2, 2025

Summary

CVE-2022-37981 is a newly identified vulnerability that affects the Windows Event Logging Service. This issue permits an attacker to cause a Denial of Service (DoS) condition by sending specially crafted event logs to the targeted system. The vulnerability could lead to the service crashing or becoming unresponsive, resulting in a disruption of normal system operations. Exploitation of this vulnerability does not provide attackers with direct system access but can cause significant inconvenience and potential downtime. Microsoft has released a patch to address this issue, and it is strongly recommended that users install the update as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows 7
  • Microsoft Windows Server 2008
  • Microsoft Windows 10
  • Microsoft Windows Server 2012
  • Microsoft Windows 8.1

Affected Vendors

  • Microsoft