7.5
CVE-2022-24487
- EPSS 2.14%
- Veröffentlicht 15.04.2022 19:15:10
- Zuletzt bearbeitet 02.01.2025 19:15:48
- Erkennungen
Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability
Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows 10 Version 20h2
Microsoft ≫ Windows 10 Version 21h1
Microsoft ≫ Windows 10 Version 21h2
Microsoft ≫ Windows 10 Version 1607
Microsoft ≫ Windows 10 Version 1809
Microsoft ≫ Windows 10 Version 1909
Microsoft ≫ Windows 11 Version - HwPlatform arm64
Microsoft ≫ Windows 11 Version - HwPlatform x64
Microsoft ≫ Windows Server 2016 Version -
Microsoft ≫ Windows Server 2016 Version 20h2
Microsoft ≫ Windows Server 2019 Version -
Microsoft ≫ Windows Server 2022 Version -
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.14% | 0.804 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
| NIST | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| Microsoft | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-24487