CVE-2022-30154
published 2022-06-15CVE-2022-30154: Microsoft File Server Shadow Copy Agent Service (RVSS) Elevation of Privilege Vulnerability
PriorityP429medium5.3CVSS 3.1
AVNACHPRLUINSUCNIHAN
EPSS
1.53%
71.9th percentile
Microsoft File Server Shadow Copy Agent Service (RVSS) Elevation of Privilege Vulnerability
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | windows_10 | — | — |
| microsoft | windows_server_2012 | — | — |
| microsoft | windows_server_2012 | >= 6.2.9200.0 < 6.2.9200.23736 | 6.2.9200.23736 |
| microsoft | windows_server_2012_r2 | >= 6.3.9600.0 < 6.3.9600.20402 | 6.3.9600.20402 |
| microsoft | windows_server_2016 | >= 10.0.14393.0 < 10.0.14393.5192 | 10.0.14393.5192 |
| microsoft | windows_server_2019 | >= 10.0.17763.0 < 10.0.17763.3046 | 10.0.17763.3046 |
| microsoft | windows_server_2022 | >= 10.0.20348.0 < 10.0.20348.770 | 10.0.20348.770 |
| microsoft | windows_server_version_20h2 | >= 10.0.0 < 10.0.19042.1766 | 10.0.19042.1766 |
| msrc | windows_server_2012 | — | — |
| msrc | windows_server_2012_r2 | — | — |
| msrc | windows_server_2016 | — | — |
| msrc | windows_server_2019 | — | — |
| msrc | windows_server_2022 | — | — |
| msrc | windows_server_version_20h2 | — | — |
CVSS provenance
nvdv3.15.3MEDIUMCVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N
nvdv2.02.1LOWAV:N/AC:H/Au:S/C:N/I:P/A:N
vendor_msrc5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Microsoft
Microsoft File Server Shadow Copy Agent Service (RVSS) Elevation of Privilege Vulnerability
vendor_msrc·2022-06-14·CVSS 5.3
CVE-2022-30154 [MEDIUM] Microsoft File Server Shadow Copy Agent Service (RVSS) Elevation of Privilege Vulnerability
Microsoft File Server Shadow Copy Agent Service (RVSS) Elevation of Privilege Vulnerability
FAQ: I am running a supported version of Windows Server. Is my system vulnerable to this issue?
Systems running Windows Server that have the optional component File Server VSS Agent Service installed are vulnerable to this exploit. By default, systems running Windows Server are not vulnerable. In addition, Windows Client editions are not vulnerable to this exploit.
FAQ: Are there any more actions I need to take to be protected from this vulnerability?
Yes. Customers who have the File Server VSS Agent Service running on their Windows Servers must install the June 14, 2022 or later Windows updates on both the Application Server and the File Server, to become protected and functional. Failure to inst
GHSA
GHSA-wvgr-fcfh-4f5q: Microsoft File Server Shadow Copy Agent Service (RVSS) Elevation of Privilege Vulnerability
ghsa_unreviewed·2022-06-16
CVE-2022-30154 [MEDIUM] CWE-269 GHSA-wvgr-fcfh-4f5q: Microsoft File Server Shadow Copy Agent Service (RVSS) Elevation of Privilege Vulnerability
Microsoft File Server Shadow Copy Agent Service (RVSS) Elevation of Privilege Vulnerability.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-06-15
Published