CVE-2022-34689
published 2022-10-11CVE-2022-34689: Windows CryptoAPI Spoofing Vulnerability Windows CryptoAPI Spoofing Vulnerability
high7.5CVSS 3.1
AVNACLPRNUINSUCNIHAN
EPSS
37.93%
98.4th percentile
Windows CryptoAPI Spoofing Vulnerability
Windows CryptoAPI Spoofing Vulnerability
Affected
34 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | windows_10_version_1507 | >= 10.0.10240.0 < 10.0.10240.19387 | 10.0.10240.19387 |
| microsoft | windows_10_version_1607 | >= 10.0.14393.0 < 10.0.14393.5291 | 10.0.14393.5291 |
| microsoft | windows_10_version_1809 | >= 10.0.0 < 10.0.17763.3287 | 10.0.17763.3287 |
| microsoft | windows_10_version_1809 | >= 10.0.17763.0 < 10.0.17763.3287 | 10.0.17763.3287 |
| microsoft | windows_10_version_20h2 | >= 10.0.0 < 10.0.19042.1889 | 10.0.19042.1889 |
| microsoft | windows_10_version_21h1 | >= 10.0.0 < 10.0.19043.1889 | 10.0.19043.1889 |
| microsoft | windows_10_version_21h2 | >= 10.0.19043.0 < 10.0.19044.1889 | 10.0.19044.1889 |
| microsoft | windows_11_version_21h2 | >= 10.0.0 < 10.0.22000.856 | 10.0.22000.856 |
| microsoft | windows_7 | >= 6.1.0 < 10.0.14393.5291 | 10.0.14393.5291 |
| microsoft | windows_7_service_pack_1 | >= 6.1.0 < 6.1.7601.26065 | 6.1.7601.26065 |
| microsoft | windows_8.1 | >= 6.3.0 < 6.3.9600.20520 | 6.3.9600.20520 |
| microsoft | windows_server_2008_r2_service_pack_1 | >= 6.1.7601.0 < 6.1.7601.26065 | 6.1.7601.26065 |
| microsoft | windows_server_2008_service_pack_2 | >= 6.0.6003.0 < 6.0.6003.21616 | 6.0.6003.21616 |
| microsoft | windows_server_2012 | >= 6.2.9200.0 < 6.2.9200.23817 | 6.2.9200.23817 |
| microsoft | windows_server_2012_r2 | >= 6.3.9600.0 < 6.3.9600.20520 | 6.3.9600.20520 |
| microsoft | windows_server_2016 | >= 10.0.14393.0 < 10.0.14393.5291 | 10.0.14393.5291 |
| microsoft | windows_server_2019 | >= 10.0.17763.0 < 10.0.17763.3287 | 10.0.17763.3287 |
| microsoft | windows_server_2022 | >= 10.0.20348.0 < 10.0.20348.887 | 10.0.20348.887 |
| msrc | windows_10 | — | — |
| msrc | windows_10_version_1607 | — | — |
| msrc | windows_10_version_1809 | — | — |
| msrc | windows_10_version_20h2 | — | — |
| msrc | windows_10_version_21h1 | — | — |
| msrc | windows_10_version_21h2 | — | — |
| msrc | windows_11_version_21h2 | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
cvelistv57.5HIGH
vendor_msrc7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Microsoft
Windows CryptoAPI Spoofing Vulnerability
vendor_msrc·2022-10-11·CVSS 7.5
CVE-2022-34689 [HIGH] Windows CryptoAPI Spoofing Vulnerability
Windows CryptoAPI Spoofing Vulnerability
FAQ: What is the nature of the spoofing?
An attacker could manipulate an existing public x.509 certificate to spoof their identity and perform actions such as authentication or code signing as the targeted certificate.
Windows CryptoAPI: Windows CryptoAPI
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Spoofing
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Software Release:Exploitation More Likely;Older Software Release:Exploitation More Likely;DOS:N/A
Reference: https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5016623
Reference: https://support.microsoft.com/help/5016623
Reference: https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5016616
Reference: https://support.microsoft.com/help/5016616
CVEList
Windows CryptoAPI Spoofing Vulnerability
cvelistv5·2022-10-11·CVSS 7.5
CVE-2022-34689 [HIGH] Windows CryptoAPI Spoofing Vulnerability
Windows CryptoAPI Spoofing Vulnerability
Windows CryptoAPI Spoofing Vulnerability
No detection rules found.
No public exploits indexed.
Checkpoint
30th January – Threat Intelligence Report
blogs_checkpoint·2023-01-30
CVE-2022-3094 30th January – Threat Intelligence Report
Latest Publications
CPR Podcast Channel
AI Research
Web 3.0 Security
Intelligence Reports
ThreatCloud AI
Threat Intelligence & Research
Zero Day Protection
Sandblast File Analysis
About Us
SUBSCRIBE
2026
2025
2024
2023
2022
2021
2020
2019
2018
2017
2016
## 30th January – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 30th January, please download our Threat_Intelligence Bulletin
TOP ATTACKS AND BREACHE
The ALPHV/BlackCat Ransomware group has allegedly hacked Westmont Hospitality Group, one of the largest privately-held hospitality businesses in the world. They claim to have obtained access to 262GB of the company’s data.
Check Point Harmony Endpoint and Threat Emulation provide protection against this threat (Ransomware.W
Qualys
October 2022 Patch Tuesday | Microsoft Releases 84 Vulnerabilities With 13 Critical, Plus 12 Microsoft Edge (Chromium-Based); Adobe Releases 4 Advisories, 29 Vulnerabilities With 17 Critical. | Qualys
blogs_qualys·2022-10-11·CVSS 7.8
[HIGH] October 2022 Patch Tuesday | Microsoft Releases 84 Vulnerabilities With 13 Critical, Plus 12 Microsoft Edge (Chromium-Based); Adobe Releases 4 Advisories, 29 Vulnerabilities With 17 Critical. | Qualys
#### Table of Contents
- Microsoft Patch Tuesday Summary
- Microsoft Exchange ProxyNotShell Zero-Days Not Yet Addressed (QID 50122)
- The October 2022 Microsoft Vulnerabilities Are Classified As Follows:
- Two Zero-Day Vulnerabilities Addressed
- Microsoft Critical Vulnerability Highlights
- Microsoft Release Summary
- Microsoft Edge | Last But Not Least
- Adobe Security Bulletins and Advisories
- About Qualys Patch Tuesday
- Qualys Threat Research Blog Posts
- Qualys Threat Protection High-Rated Advisories
- Discover and Prioritize Vulnerabilities in Vulnerability Management Detection Response(VMDR)
- Rapid Response With Patch Management (PM)
- EXECUTE Mitigation Using Custom Assessment and Remediation (CAR)
- EVALUATE Vendor-Suggested Mitigation With Policy Compliance (PC)
- This Month
Qualys
October 2022 Patch Tuesday | Microsoft Releases 84 Vulnerabilities With 13 Critical, Plus 12 Microsoft Edge (Chromium-Based); Adobe Releases 4 Advisories, 29 Vulnerabilities With 17 Critical.
blogs_qualys·2022-10-11·CVSS 7.8
[HIGH] October 2022 Patch Tuesday | Microsoft Releases 84 Vulnerabilities With 13 Critical, Plus 12 Microsoft Edge (Chromium-Based); Adobe Releases 4 Advisories, 29 Vulnerabilities With 17 Critical.
## Table of Contents
Microsoft Patch Tuesday Summary
Microsoft Exchange ProxyNotShell Zero-Days Not Yet Addressed (QID 50122)
The October 2022 Microsoft Vulnerabilities Are Classified As Follows:
Two Zero-Day Vulnerabilities Addressed
Microsoft Critical Vulnerability Highlights
Microsoft Release Summary
Microsoft Edge | Last But Not Least
Adobe Security Bulletins and Advisories
About Qualys Patch Tuesday
Qualys Threat Research Blog Posts
Qualys Threat Protection High-Rated Advisories
Discover and Prioritize Vulnerabilities in Vulnerability Management Detection Response(VMDR)
Rapid Response With Patch Management (PM)
EXECUTE Mitigation Using Custom Assessment and Remediation (CAR)
EVALUATE Vendor-Suggested Mitigation With Policy Compliance (PC)
This Month in Vulnerabilities
2022-10-11
Published