CVE-2022-30179
published 2022-06-15CVE-2022-30179: Azure RTOS GUIX Studio Remote Code Execution Vulnerability
PriorityP341high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
2.41%
82.1th percentile
Azure RTOS GUIX Studio Remote Code Execution Vulnerability
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | azure_rtos_guix_studio | >= 6.0.0.0 < 6.1.11.0 | 6.1.11.0 |
| msrc | azure_rtos_guix_studio | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
vendor_msrc7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-v29h-c7w3-f6xp: Azure RTOS GUIX Studio Remote Code Execution Vulnerability
ghsa_unreviewed·2022-06-16·CVSS 7.8
CVE-2022-30179 [HIGH] GHSA-v29h-c7w3-f6xp: Azure RTOS GUIX Studio Remote Code Execution Vulnerability
Azure RTOS GUIX Studio Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-30177, CVE-2022-30178.
GHSA
GHSA-x488-6r9q-wghw: Azure RTOS GUIX Studio Remote Code Execution Vulnerability
ghsa_unreviewed·2022-06-16·CVSS 7.8
CVE-2022-30178 [HIGH] GHSA-x488-6r9q-wghw: Azure RTOS GUIX Studio Remote Code Execution Vulnerability
Azure RTOS GUIX Studio Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-30177, CVE-2022-30179.
GHSA
GHSA-9577-9q88-9qxg: Azure RTOS GUIX Studio Remote Code Execution Vulnerability
ghsa_unreviewed·2022-06-16·CVSS 7.8
CVE-2022-30177 [HIGH] GHSA-9577-9q88-9qxg: Azure RTOS GUIX Studio Remote Code Execution Vulnerability
Azure RTOS GUIX Studio Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-30178, CVE-2022-30179.
Microsoft
Azure RTOS GUIX Studio Remote Code Execution Vulnerability
vendor_msrc·2022-06-14·CVSS 7.8
CVE-2022-30179 [HIGH] Azure RTOS GUIX Studio Remote Code Execution Vulnerability
Azure RTOS GUIX Studio Remote Code Execution Vulnerability
FAQ: According to the CVSS metric, user interaction is required (UI:R). What interaction would the user have to do?
An attacker must send the user a malicious input file and convince the user to open said input file.
FAQ: What is RTOS?
Azure RTOS is an embedded development suite including a small but powerful operating system that provides reliable, ultra-fast performance for resource-constrained devices. See Azure RTOS Overview for more information.
What is Azure RTOS GUIX Studio?
Azure GUIX embedded GUI is Microsoft’s advanced, industrial grade GUI solution designed specifically for deeply embedded, real-time, and IoT applications. Microsoft also provides a full-featured WYSIWYG desktop design tool named Azure RTOS GUIX Studio,
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-06-15
Published