Lucene search

K
nvd[email protected]NVD:CVE-2022-21864
HistoryJan 11, 2022 - 9:15 p.m.

CVE-2022-21864

2022-01-1121:15:10
web.nvd.nist.gov
7
cve-2022-21864
windows ui
immersive server api
elevation of privilege

CVSS2

4.4

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:M/Au:N/C:P/I:P/A:P

CVSS3

7

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0

Percentile

9.5%

Windows UI Immersive Server API Elevation of Privilege Vulnerability

Affected configurations

Nvd
Node
microsoftwindows_10Match-x64
OR
microsoftwindows_10Match-x86
OR
microsoftwindows_10Match20h2arm64
OR
microsoftwindows_10Match20h2x64
OR
microsoftwindows_10Match20h2x86
OR
microsoftwindows_10Match21h1arm64
OR
microsoftwindows_10Match21h1x64
OR
microsoftwindows_10Match21h1x86
OR
microsoftwindows_10Match21h2arm64
OR
microsoftwindows_10Match21h2x64
OR
microsoftwindows_10Match21h2x86
OR
microsoftwindows_10Match1607x64
OR
microsoftwindows_10Match1607x86
OR
microsoftwindows_10Match1809arm64
OR
microsoftwindows_10Match1809x64
OR
microsoftwindows_10Match1809x86
OR
microsoftwindows_10Match1909arm64
OR
microsoftwindows_10Match1909x64
OR
microsoftwindows_10Match1909x86
OR
microsoftwindows_11Match-arm64
OR
microsoftwindows_11Match-x64
OR
microsoftwindows_8.1Match-x64
OR
microsoftwindows_8.1Match-x86
OR
microsoftwindows_8.1Match-rt
OR
microsoftwindows_serverMatch20h2
OR
microsoftwindows_serverMatch2022
OR
microsoftwindows_server_2012Match-
OR
microsoftwindows_server_2012Matchr2
OR
microsoftwindows_server_2016Match-
OR
microsoftwindows_server_2019Match-
VendorProductVersionCPE
microsoftwindows_10-cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:x64:*
microsoftwindows_10-cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:x86:*
microsoftwindows_1020h2cpe:2.3:o:microsoft:windows_10:20h2:*:*:*:*:*:arm64:*
microsoftwindows_1020h2cpe:2.3:o:microsoft:windows_10:20h2:*:*:*:*:*:x64:*
microsoftwindows_1020h2cpe:2.3:o:microsoft:windows_10:20h2:*:*:*:*:*:x86:*
microsoftwindows_1021h1cpe:2.3:o:microsoft:windows_10:21h1:*:*:*:*:*:arm64:*
microsoftwindows_1021h1cpe:2.3:o:microsoft:windows_10:21h1:*:*:*:*:*:x64:*
microsoftwindows_1021h1cpe:2.3:o:microsoft:windows_10:21h1:*:*:*:*:*:x86:*
microsoftwindows_1021h2cpe:2.3:o:microsoft:windows_10:21h2:*:*:*:*:*:arm64:*
microsoftwindows_1021h2cpe:2.3:o:microsoft:windows_10:21h2:*:*:*:*:*:x64:*
Rows per page:
1-10 of 301

CVSS2

4.4

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:M/Au:N/C:P/I:P/A:P

CVSS3

7

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0

Percentile

9.5%