Lucene search

K
nvd[email protected]NVD:CVE-2022-21919
HistoryJan 11, 2022 - 9:15 p.m.

CVE-2022-21919

2022-01-1121:15:13
CWE-59
web.nvd.nist.gov
1

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

7 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

0.002 Low

EPSS

Percentile

58.5%

Windows User Profile Service Elevation of Privilege Vulnerability

Affected configurations

NVD
Node
microsoftwindows_10Match-x64
OR
microsoftwindows_10Match-x86
OR
microsoftwindows_10Match20h2arm64
OR
microsoftwindows_10Match20h2x64
OR
microsoftwindows_10Match20h2x86
OR
microsoftwindows_10Match21h1arm64
OR
microsoftwindows_10Match21h1x64
OR
microsoftwindows_10Match21h1x86
OR
microsoftwindows_10Match21h2arm64
OR
microsoftwindows_10Match21h2x64
OR
microsoftwindows_10Match21h2x86
OR
microsoftwindows_10Match1607x64
OR
microsoftwindows_10Match1607x86
OR
microsoftwindows_10Match1809arm64
OR
microsoftwindows_10Match1809x64
OR
microsoftwindows_10Match1809x86
OR
microsoftwindows_10Match1909arm64
OR
microsoftwindows_10Match1909x64
OR
microsoftwindows_10Match1909x86
OR
microsoftwindows_11Match-arm64
OR
microsoftwindows_11Match-x64
OR
microsoftwindows_7Match-sp1x64
OR
microsoftwindows_7Match-sp1x86
OR
microsoftwindows_8.1Match--x64
OR
microsoftwindows_8.1Match--x86
OR
microsoftwindows_8.1Match-rt
OR
microsoftwindows_serverMatch20h2
OR
microsoftwindows_serverMatch2022
OR
microsoftwindows_server_2008Match-sp2x64
OR
microsoftwindows_server_2008Match-sp2x86
OR
microsoftwindows_server_2008Matchr2sp1x64
OR
microsoftwindows_server_2012Match-
OR
microsoftwindows_server_2012Matchr2
OR
microsoftwindows_server_2016Match-
OR
microsoftwindows_server_2019Match-

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

7 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

0.002 Low

EPSS

Percentile

58.5%