CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
PARTIAL
Availability Impact
NONE
AV:N/AC:M/Au:N/C:N/I:P/A:N
CVSS3
Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
HIGH
Availability Impact
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
AI Score
Confidence
High
EPSS
Percentile
46.4%
Microsoft Defender for Endpoint Spoofing Vulnerability
Vendor | Product | Version | CPE |
---|---|---|---|
microsoft | defender_for_endpoint_edr_sensor | * | cpe:2.3:a:microsoft:defender_for_endpoint_edr_sensor:*:*:*:*:*:*:*:* |
microsoft | windows_server_2012 | r2 | cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:* |
microsoft | windows_server_2016 | - | cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:* |
microsoft | defender_for_endpoint | - | cpe:2.3:a:microsoft:defender_for_endpoint:-:*:*:*:*:*:*:* |
microsoft | windows_10 | 20h2 | cpe:2.3:o:microsoft:windows_10:20h2:*:*:*:*:*:*:* |
microsoft | windows_10 | 21h1 | cpe:2.3:o:microsoft:windows_10:21h1:*:*:*:*:*:*:* |
microsoft | windows_10 | 21h2 | cpe:2.3:o:microsoft:windows_10:21h2:*:*:*:*:*:*:* |
microsoft | windows_10 | 1809 | cpe:2.3:o:microsoft:windows_10:1809:*:*:*:*:*:*:* |
microsoft | windows_10 | 1909 | cpe:2.3:o:microsoft:windows_10:1909:*:*:*:*:*:*:* |
microsoft | windows_11 | - | cpe:2.3:o:microsoft:windows_11:-:*:*:*:*:*:arm64:* |
[
{
"vendor": "Microsoft",
"product": "Microsoft Defender for Endpoint for Linux",
"cpes": [
"cpe:2.3:a:microsoft:defender_for_endpoint:-:*:*:*:*:*:*:*"
],
"platforms": [
"Unknown"
],
"versions": [
{
"version": "101.0.0",
"lessThan": "101.60.93",
"versionType": "custom",
"status": "affected"
}
]
},
{
"vendor": "Microsoft",
"product": "Microsoft Defender for Endpoint for Mac",
"cpes": [
"cpe:2.3:a:microsoft:defender_for_endpoint:-:*:*:*:*:macos:*:*"
],
"platforms": [
"Unknown"
],
"versions": [
{
"version": "101.0.0",
"lessThan": "101.60.91",
"versionType": "custom",
"status": "affected"
}
]
},
{
"vendor": "Microsoft",
"product": "Microsoft Defender for Endpoint for Android",
"cpes": [
"cpe:2.3:a:microsoft:defender_for_endpoint:-:*:*:*:*:*:*:*"
],
"platforms": [
"Unknown"
],
"versions": [
{
"version": "1.0.0.0",
"lessThan": "1.0.3011.0302",
"versionType": "custom",
"status": "affected"
}
]
},
{
"vendor": "Microsoft",
"product": "Microsoft Defender for Endpoint for iOS",
"cpes": [
"cpe:2.3:a:microsoft:defender_for_endpoint:-:*:*:*:*:*:*:*"
],
"platforms": [
"Unknown"
],
"versions": [
{
"version": "1.0.0.0",
"lessThan": "1.1.18090109",
"versionType": "custom",
"status": "affected"
}
]
},
{
"vendor": "Microsoft",
"product": "Microsoft Defender for Endpoint for Windows",
"cpes": [
"cpe:2.3:a:microsoft:defender_for_endpoint:-:*:*:*:*:*:*:*"
],
"platforms": [
"Windows 10 Version 20H2 for 32-bit Systems",
"Windows 10 Version 1909 for ARM64-based Systems",
"Windows Server, version 20H2 (Server Core Installation)",
"Windows 11 version 21H2 for x64-based Systems",
"Windows 10 Version 21H2 for 32-bit Systems",
"Windows 11 version 21H2 for ARM64-based Systems",
"Windows 10 Version 1909 for x64-based Systems",
"Windows Server 2022",
"Windows Server 2022 Datacenter: Azure Edition",
"Windows 10 Version 1909 for 32-bit Systems",
"Windows 10 Version 21H1 for ARM64-based Systems",
"Windows 10 Version 20H2 for ARM64-based Systems",
"Windows Server 2019 (Server Core installation)",
"Windows 10 Version 21H1 for 32-bit Systems",
"Windows 10 Version 21H2 for x64-based Systems",
"Windows 10 Version 21H2 for ARM64-based Systems",
"Windows Server 2022 (Server Core installation)",
"Windows 10 Version 21H1 for x64-based Systems",
"Windows Server 2019",
"Windows 10 Version 1809 for x64-based Systems",
"Windows 10 Version 1809 for ARM64-based Systems",
"Windows 10 Version 1809 for 32-bit Systems"
],
"versions": [
{
"version": "1.0.0.0",
"lessThan": "10.0.19042.1586",
"versionType": "custom",
"status": "affected"
},
{
"version": "1.0.0.0",
"lessThan": "10.0.18363.2158",
"versionType": "custom",
"status": "affected"
},
{
"version": "1.0.0.0",
"lessThan": "10.0.22000.556",
"versionType": "custom",
"status": "affected"
},
{
"version": "1.0.0.0",
"lessThan": "10.0.19044.1586",
"versionType": "custom",
"status": "affected"
},
{
"version": "1.0.0.0",
"lessThan": "10.0.20348.587",
"versionType": "custom",
"status": "affected"
},
{
"version": "1.0.0.0",
"lessThan": "10.0.20348.580",
"versionType": "custom",
"status": "affected"
},
{
"version": "1.0.0.0",
"lessThan": "10.0.19043.1586",
"versionType": "custom",
"status": "affected"
},
{
"version": "1.0.0.0",
"lessThan": "10.0.17763.2686",
"versionType": "custom",
"status": "affected"
}
]
},
{
"vendor": "Microsoft",
"product": "Microsoft Defender for Endpoint EDR sensor",
"cpes": [
"cpe:2.3:a:microsoft:defender_for_endpoint_edr_sensor:*:*:*:*:*:*:*:*"
],
"platforms": [
"Windows Server 2016",
"Windows Server 2016 (Server Core installation)",
"Windows Server 2012 R2",
"Windows Server 2012 R2 (Server Core installation)"
],
"versions": [
{
"version": "1.0.0.0",
"lessThan": "10.8047.22439",
"versionType": "custom",
"status": "affected"
}
]
}
]
CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
PARTIAL
Availability Impact
NONE
AV:N/AC:M/Au:N/C:N/I:P/A:N
CVSS3
Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
HIGH
Availability Impact
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
AI Score
Confidence
High
EPSS
Percentile
46.4%