CVE-2022-26935

Severity
6.5MEDIUM
EPSS
0.5%
top 33.19%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 10
Latest updateMay 11

Description

Windows WLAN AutoConfig Service Information Disclosure Vulnerability

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages28 packages

CVEListV5microsoft/windows_7_service_pack_16.1.06.1.7601.25954
CVEListV5microsoft/windows_server_2008_service_pack_26.0.6003.06.0.6003.21481
CVEListV5microsoft/windows_server_2008_r2_service_pack_16.1.7601.06.1.7601.25954

Patches

🔴Vulnerability Details

2
GHSA
GHSA-2h9q-f394-cmcx: Windows WLAN AutoConfig Service Information Disclosure Vulnerability2022-05-11
CVEList
Windows WLAN AutoConfig Service Information Disclosure Vulnerability2022-05-10

📋Vendor Advisories

1
Microsoft
Windows WLAN AutoConfig Service Information Disclosure Vulnerability2022-05-10
CVE-2022-26935 (MEDIUM CVSS 6.5) | Windows WLAN AutoConfig Service Inf | cvebase.io