CVE-2022-41081
CVSS 3.1 Score 8.1 of 10 (high)
Details
Summary
CVE-2022-41081 is a remote code execution vulnerability affecting the Windows Point-to-Point Tunneling Protocol (PPTP). Cybercriminals can exploit this weakness to gain unauthorized access to affected systems and run arbitrary code. Successful exploitation occurs when the PPTP server fails to properly validate incoming packets, allowing attackers to send specially crafted packets to execute commands on the targeted system. This vulnerability poses a significant threat to organizations that use PPTP for secure remote access and urgently requires patching to mitigate the risk of exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows Server 2008
- Microsoft Windows 7
- Microsoft Windows 10
- Microsoft Windows 8.1
- Microsoft Windows Server 2012
Affected Vendors
- Microsoft