Lucene search

K
mscveMicrosoftMS:CVE-2022-30154
HistoryJun 14, 2022 - 7:00 a.m.

Microsoft File Server Shadow Copy Agent Service (RVSS) Elevation of Privilege Vulnerability

2022-06-1407:00:00
Microsoft
msrc.microsoft.com
416
file server shadow copy
rvss
elevation of privilege
vulnerability
microsoft

CVSS2

2.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:S/C:N/I:P/A:N

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

19.7%

Affected configurations

Vulners
Node
microsoftwindows_server_2012Range<6.3.9600.20402r2
OR
microsoftwindows_server_2012Range<6.3.9600.20402r2
OR
microsoftwindows_server_2012Range<6.3.9600.20402r2
OR
microsoftwindows_server_2012Range<6.3.9600.20402r2
OR
microsoftwindows_server_2012Range<6.2.9200.23736
OR
microsoftwindows_server_2012Range<6.2.9200.23736
OR
microsoftwindows_server_2012Range<6.2.9200.23736
OR
microsoftwindows_server_2012Range<6.2.9200.23736
OR
microsoftwindows_server_2016Range<10.0.14393.5192
OR
microsoftwindows_server_2016Range<10.0.14393.5192
OR
microsoftwindows_server_20h2Range<10.0.19042.1766
OR
microsoftwindows_server_2022Range<10.0.20348.770
OR
microsoftwindows_server_2022Range<10.0.20348.770
OR
microsoftwindows_server_2022Range<10.0.20348.770
OR
microsoftwindows_server_2022Range<10.0.20348.770
OR
microsoftwindows_server_2019Range<10.0.17763.3046
OR
microsoftwindows_server_2019Range<10.0.17763.3046
VendorProductVersionCPE
microsoftwindows_server_2012*cpe:2.3:o:microsoft:windows_server_2012:*:r2:*:*:*:*:*:*
microsoftwindows_server_2012*cpe:2.3:o:microsoft:windows_server_2012:*:*:*:*:*:*:*:*
microsoftwindows_server_2016*cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*
microsoftwindows_server_20h2*cpe:2.3:o:microsoft:windows_server_20h2:*:*:*:*:*:*:*:*
microsoftwindows_server_2022*cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*
microsoftwindows_server_2019*cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*

CVSS2

2.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:S/C:N/I:P/A:N

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

19.7%