CVE-2022-34713
published 2022-08-09CVE-2022-34713: Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
PriorityP182high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
KEVITW
CISA Known Exploited Vulnerabilitydue 2022-08-30
Exploited in the wild
EPSS
67.98%
99.2th percentile
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
Affected
47 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | windows_10_1507 | < 10.0.10240.19387 | 10.0.10240.19387 |
| microsoft | windows_10_1607 | < 10.0.14393.5291 | 10.0.14393.5291 |
| microsoft | windows_10_1809 | < 10.0.17763.3287 | 10.0.17763.3287 |
| microsoft | windows_10_20h2 | < 10.0.19042.1889 | 10.0.19042.1889 |
| microsoft | windows_10_21h1 | < 10.0.19043.1889 | 10.0.19043.1889 |
| microsoft | windows_10_21h2 | < 10.0.19044.1889 | 10.0.19044.1889 |
| microsoft | windows_10_version_1507 | >= 10.0.10240.0 < 10.0.10240.19387 | 10.0.10240.19387 |
| microsoft | windows_10_version_1607 | >= 10.0.14393.0 < 10.0.14393.5291 | 10.0.14393.5291 |
| microsoft | windows_10_version_1809 | >= 10.0.0 < 10.0.17763.3287 | 10.0.17763.3287 |
| microsoft | windows_10_version_1809 | >= 10.0.17763.0 < 10.0.17763.3287 | 10.0.17763.3287 |
| microsoft | windows_10_version_20h2 | >= 10.0.0 < 10.0.19042.1889 | 10.0.19042.1889 |
| microsoft | windows_10_version_21h1 | >= 10.0.0 < 10.0.19043.1889 | 10.0.19043.1889 |
| microsoft | windows_10_version_21h2 | >= 10.0.19043.0 < 10.0.19044.1889 | 10.0.19044.1889 |
| microsoft | windows_11_21h2 | < 10.0.22000.856 | 10.0.22000.856 |
| microsoft | windows_11_version_21h2 | >= 10.0.0 < 10.0.22000.856 | 10.0.22000.856 |
| microsoft | windows_7 | >= 6.1.0 < 6.1.7601.26065 | 6.1.7601.26065 |
| microsoft | windows_7_service_pack_1 | >= 6.1.0 < 6.1.7601.26065 | 6.1.7601.26065 |
| microsoft | windows_8.1 | >= 6.3.0 < 6.3.9600.20520 | 6.3.9600.20520 |
| microsoft | windows_server_2008 | — | — |
| microsoft | windows_server_2008_r2_service_pack_1 | >= 6.1.7601.0 < 6.1.7601.26065 | 6.1.7601.26065 |
| microsoft | windows_server_2012 | — | — |
| microsoft | windows_server_2012 | >= 6.2.9200.0 < 6.2.9200.23817 | 6.2.9200.23817 |
| microsoft | windows_server_2012_r2 | >= 6.3.9600.0 < 6.3.9600.20520 | 6.3.9600.20520 |
| microsoft | windows_server_2016 | < 10.0.14393.5291 | 10.0.14393.5291 |
| microsoft | windows_server_2016 | >= 10.0.14393.0 < 10.0.14393.5291 | 10.0.14393.5291 |
Detection & IOCsextracted from sources · hover to see the quote
- →Monitor for msdt.exe spawning child processes, particularly when launched from a .diagcab file opened by a user ↗
- →Detect sdiageng.dll loading within msdt.exe and subsequent Path variable resolution pointing to an external WebDAV server ↗
- →Alert on files being written to the Windows Startup folder via path traversal from a WebDAV-sourced diagcab execution ↗
- →Flag .diagcab file downloads or executions originating from web browsers, email clients, or drive-by download vectors ↗
- ·Payload executes after system restart, not immediately upon .diagcab execution — detection at drop time (Startup folder write) is critical since runtime execution may be delayed ↗
- ·The WebDAV server used for payload delivery is attacker-controlled and ephemeral — no static IOC for the server is available; detection must focus on the traversal behavior rather than a specific host ↗
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
vulncheck7.8HIGH
cisa7.8HIGH
vendor_msrc7.8HIGH
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
cisa·2022-08-09·CVSS 7.8
CVE-2022-34713 [HIGH] Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
Vulnerability: Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
Affected: Microsoft Windows
A remote code execution vulnerability exists when Microsoft Windows MSDT is called using the URL protocol from a calling application.
Required Action: Apply updates per vendor instructions.
Notes: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34713; https://nvd.nist.gov/vuln/detail/CVE-2022-34713
Remediation Due Date: 2022-08-30
Microsoft
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
vendor_msrc·2022-08-09·CVSS 7.8
CVE-2022-34713 [HIGH] Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
FAQ: According to the CVSS metric, the attack vector is local (AV:L). Why does the CVE title indicate that this is a remote code execution?
The word Remote in the title refers to the location of the attacker. This type of exploit is sometimes referred to as Arbitrary Code Execution (ACE). The attack itself is carried out locally.
For example, when the score indicates that the Attack Vector is Local and User Interaction is Required, this could describe an exploit in which an attacker, through social engineering, convinces a victim to download and open a specially crafted file from a website which leads to a local attack on their computer.
FAQ: According to the CVSS metric, user interaction is required (UI
GHSA
GHSA-86f2-7h4r-pc7m: Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
ghsa_unreviewed·2022-08-10·CVSS 7.8
CVE-2022-34713 [HIGH] GHSA-86f2-7h4r-pc7m: Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-35743.
VulnCheck
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
vulncheck·2022·CVSS 7.8
CVE-2022-34713 [HIGH] Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
A remote code execution vulnerability exists when Microsoft Windows MSDT is called using the URL protocol from a calling application.
Affected: Microsoft Windows
Required Action: Apply updates per vendor instructions.
Exploitation References: https://api.msrc.microsoft.com/cvrf/v3.0/cvrf/2022-Aug; https://www.cisa.gov/sites/default/files/feeds/known_exploited_vulnerabilities.json; https://assets.sentinelone.com/wt-reports/watchtower_2022_eoy; https://www.welivesecurity.com/2023/03/01/blacklotus-uefi-bootkit-myth-confirmed/
Remediation Due: 2022-08-30
No detection rules found.
No public exploits indexed.
Trendmicro
Patch CVE-2023-23397 Immediately: What You Need To Know and Do
blogs_trendmicro·2023-03-21·CVSS 7.8
CVE-2023-23397 [HIGH] Patch CVE-2023-23397 Immediately: What You Need To Know and Do
Sfruttamento vulnerabilità
## Patch CVE-2023-23397 Immediately: What You Need To Know and Do
We break down the basic information of CVE-2023-23397, the zero-day, zero-touch vulnerability that was rated 9.8 on the Common Vulnerability Scoring System (CVSS) scale.
By: Trend Micro Mar 21, 2023 Read time: ( words)
Save to Folio
Update as of 03/22/3023 2:50PM PHT: Updated the prevention and mitigation section for an additional step.
CVE-2023-23397 is a critical privilege elevation/authentication bypass vulnerability in Outlook, released as part of the March Patch Tuesday set of fixes. The vulnerability, which affects all versions of Windows Outlook, was given a 9.8 CVSS rating and is one of two zero-day exploits disclosed on March 14. We summarize the points that security teams need to kn
Trendmicro
Patch CVE-2023-23397 Immediately: What You Need To Know and Do
blogs_trendmicro·2023-03-21·CVSS 7.8
CVE-2023-23397 [HIGH] Patch CVE-2023-23397 Immediately: What You Need To Know and Do
Ausnutzung von Schwachstellen
## Patch CVE-2023-23397 Immediately: What You Need To Know and Do
We break down the basic information of CVE-2023-23397, the zero-day, zero-touch vulnerability that was rated 9.8 on the Common Vulnerability Scoring System (CVSS) scale.
By: Trend Micro Mar 21, 2023 Read time: ( words)
Save to Folio
Update as of 03/22/3023 2:50PM PHT: Updated the prevention and mitigation section for an additional step.
CVE-2023-23397 is a critical privilege elevation/authentication bypass vulnerability in Outlook, released as part of the March Patch Tuesday set of fixes. The vulnerability, which affects all versions of Windows Outlook, was given a 9.8 CVSS rating and is one of two zero-day exploits disclosed on March 14. We summarize the points that security teams need to
Trendmicro
Patch CVE-2023-23397 Immediately: What You Need To Know and Do
blogs_trendmicro·2023-03-21·CVSS 7.8
CVE-2023-23397 [HIGH] Patch CVE-2023-23397 Immediately: What You Need To Know and Do
Exploits & Vulnerabilities
## Patch CVE-2023-23397 Immediately: What You Need To Know and Do
We break down the basic information of CVE-2023-23397, the zero-day, zero-touch vulnerability that was rated 9.8 on the Common Vulnerability Scoring System (CVSS) scale.
By: Trend Micro Mar 21, 2023 Read time: ( words)
Save to Folio
Update as of 03/22/3023 2:50PM PHT: Updated the prevention and mitigation section for an additional step.
CVE-2023-23397 is a critical privilege elevation/authentication bypass vulnerability in Outlook, released as part of the March Patch Tuesday set of fixes. The vulnerability, which affects all versions of Windows Outlook, was given a 9.8 CVSS rating and is one of two zero-day exploits disclosed on March 14. We summarize the points that security teams need to kn
Trendmicro
Patch CVE-2023-23397 Immediately: What You Need To Know and Do
blogs_trendmicro·2023-03-21·CVSS 7.8
CVE-2023-23397 [HIGH] Patch CVE-2023-23397 Immediately: What You Need To Know and Do
Exploits & Vulnerabilities
## Patch CVE-2023-23397 Immediately: What You Need To Know and Do
We break down the basic information of CVE-2023-23397, the zero-day, zero-touch vulnerability that was rated 9.8 on the Common Vulnerability Scoring System (CVSS) scale.
By: Trend Micro 2023/03/21 Read time: ( words)
Save to Folio
Update as of 03/22/3023 2:50PM PHT: Updated the prevention and mitigation section for an additional step.
CVE-2023-23397 is a critical privilege elevation/authentication bypass vulnerability in Outlook, released as part of the March Patch Tuesday set of fixes. The vulnerability, which affects all versions of Windows Outlook, was given a 9.8 CVSS rating and is one of two zero-day exploits disclosed on March 14. We summarize the points that security teams need to know
Trendmicro
Patch CVE-2023-23397 Immediately: What You Need To Know and Do
blogs_trendmicro·2023-03-21·CVSS 7.8
CVE-2023-23397 [HIGH] Patch CVE-2023-23397 Immediately: What You Need To Know and Do
Exploits y vulnerabilidades
## Patch CVE-2023-23397 Immediately: What You Need To Know and Do
We break down the basic information of CVE-2023-23397, the zero-day, zero-touch vulnerability that was rated 9.8 on the Common Vulnerability Scoring System (CVSS) scale.
By: Trend Micro Mar 21, 2023 Read time: ( words)
Save to Folio
Update as of 03/22/3023 2:50PM PHT: Updated the prevention and mitigation section for an additional step.
CVE-2023-23397 is a critical privilege elevation/authentication bypass vulnerability in Outlook, released as part of the March Patch Tuesday set of fixes. The vulnerability, which affects all versions of Windows Outlook, was given a 9.8 CVSS rating and is one of two zero-day exploits disclosed on March 14. We summarize the points that security teams need to k
Trendmicro
Patch CVE-2023-23397 Immediately: What You Need To Know and Do
blogs_trendmicro·2023-03-21·CVSS 9.8
CVE-2023-23397 [CRITICAL] Patch CVE-2023-23397 Immediately: What You Need To Know and Do
Exploits & Vulnerabilities
# Patch CVE-2023-23397 Immediately: What You Need To Know and Do
We break down the basic information of CVE-2023-23397, the zero-day, zero-touch vulnerability that was rated 9.8 on the Common Vulnerability Scoring System (CVSS) scale.
By: Trend Micro
2023/03/21
Read time: ( words)
Save to Folio
Update as of 03/22/3023 2:50PM PHT: Updated the prevention and mitigation section for an additional step.
CVE-2023-23397 is a critical privilege elevation/authentication bypass vulnerability in Outlook, released as part of the March Patch Tuesday set of fixes. The vulnerability, which affects all versions of Windows Outlook, was given a 9.8 CVSS rating and is one of two zero-day exploits disclosed on March 14. We summarize the points that security teams need to know
Securelist
IT threat evolution in Q3 2022. Non-mobile statistics
blogs_securelist·2022-11-18
IT threat evolution in Q3 2022. Non-mobile statistics
Table of Contents
Quarterly figures
Financial threats
Number of users attacked by banking malware
TOP 10 banking malware families
Geography of financial malware attacks
Ransomware programs
Quarterly trends and highlights
Number of new modifications
Number of users attacked by ransomware Trojans
Geography of attacked users
TOP 10 most common families of ransomware Trojans
Miners
Number of new miner modifications
Number of users attacked by miners
Geography of miner attacks
Vulnerable applications used by criminals during cyberattacks
Quarterly highlights
Vulnerability statistics
Attacks on macOS
TOP 20 threats for macOS
Geography of threats for macOS
IoT attacks
IoT threat statistics
Attacks via web resources
Countries and territories that serve as sources of web-ba
Securelist
PC malware statistics, Q3 2022
blogs_securelist·2022-11-18
PC malware statistics, Q3 2022
Table of Contents
- Quarterly figures
- Financial threats
- Ransomware programs
- Miners
- Vulnerable applications used by criminals during cyberattacks
- Attacks on macOS
- IoT attacks
- Attacks via web resources
- Local threats
Authors
- AMR
- IT threat evolution in Q3 2022
- IT threat evolution in Q3 2022. Non-mobile statistics
- IT threat evolution in Q3 2022. Mobile statistics
These statistics are based on detection verdicts of Kaspersky products and services received from users who consented to providing statistical data.
## Quarterly figures
According to Kaspersky Security Network, in Q3 2022:
- Kaspersky solutions blocked 956,074,958 attacks from online resources across the globe.
- Web Anti-Virus recognized 251,288,987 unique URLs as malicious.
- Attempts to run malware fo
Checkpoint
15th August – Threat Intelligence Report
blogs_checkpoint·2022-08-15
CVE-2022-34713 15th August – Threat Intelligence Report
Latest Publications
CPR Podcast Channel
AI Research
Web 3.0 Security
Intelligence Reports
ThreatCloud AI
Threat Intelligence & Research
Zero Day Protection
Sandblast File Analysis
About Us
SUBSCRIBE
2026
2025
2024
2023
2022
2021
2020
2019
2018
2017
2016
## 15th August – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 15th August, please download our Threat Intelligence Bulletin .
Top Attacks and Breaches
Cisco confirms it has been breached by the Yanluowang ransomware group in late May 2022. The initial access was gained after the threat actor gained an employee’s Google account credentials, saved in their browser, and after getting an MFA push accepted by the user. The company says that while there have also been signs of
Talos
Threat Source newsletter (Aug. 11, 2022) — All of the things-as-a-service
blogs_talos·2022-08-11
Threat Source newsletter (Aug. 11, 2022) — All of the things-as-a-service
Welcome to this week’s edition of the Threat Source newsletter.
Everyone seems to want to create the next “Netflix” of something. Xbox’s Game Pass is the “Netflix of video games.” Rent the Runway is a “Netflix of fashion” where customers subscribe to a rotation of fancy clothes.
And now threat actors are looking to be the “Netflix of malware.” All categories of malware have some sort of "as-a-service" twist now. Some of the largest ransomware groups in the world operate “as a service,” allowing smaller groups to pay a fee in exchange for using the larger group’s tools.
Our latest report on information-stealers points out that “infostealers as-a-service" are growing in popularity, and our researchers also discovered a new “C2 as-a-service" platform where attackers can pay to have this th
Talos
Threat Source newsletter (Aug. 11, 2022) — All of the things-as-a-service
blogs_talos·2022-08-11
Threat Source newsletter (Aug. 11, 2022) — All of the things-as-a-service
## Threat Source newsletter (Aug. 11, 2022) — All of the things-as-a-service
Welcome to this week’s edition of the Threat Source newsletter.
Everyone seems to want to create the next “Netflix” of something. Xbox’s Game Pass is the “Netflix of video games.” Rent the Runway is a “Netflix of fashion” where customers subscribe to a rotation of fancy clothes.
And now threat actors are looking to be the “Netflix of malware.” All categories of malware have some sort of " as-a-service " twist now. Some of the largest ransomware groups in the world operate “as a service,” allowing smaller groups to pay a fee in exchange for using the larger group’s tools.
Our latest report on information-stealers points out that “infostealers as-a-service" are growing in popularity, and our researchers also dis
Krebs
Microsoft Patch Tuesday, August 2022 Edition
blogs_krebs·2022-08-10·CVSS 8.0
[HIGH] Microsoft Patch Tuesday, August 2022 Edition
Microsoft today released updates to fix a record 141 security vulnerabilities in its Windows operating systems and related software. Once again, Microsoft is patching a zero-day vulnerability in the Microsoft Support Diagnostics Tool (MSDT), a service built into Windows. Redmond also addressed multiple flaws in Exchange Server — including one that was disclosed publicly prior to today — and it is urging organizations that use Exchange for email to update as soon as possible and to enable additional protections.
In June, Microsoft patched a vulnerability in MSDT dubbed “Follina” that had been used in active attacks for at least three months prior. This latest MSDT bug — CVE-2022-34713 — is a remote code execution flaw that requires convincing a target to open a booby-trapped file, such as
Tenable
Microsoft’s August 2022 Patch Tuesday Addresses 118 CVEs (CVE-2022-34713)
blogs_tenable·2022-08-09·CVSS 7.8
[HIGH] Microsoft’s August 2022 Patch Tuesday Addresses 118 CVEs (CVE-2022-34713)
## Cloud Exposure
Tenable Cloud Security (CNAPP) Request a demo
Tenable Cloud Vulnerability Management Request a demo
Tenable CIEM Request a demo
Secure your cloud
## Vulnerability Exposure
Tenable Vulnerability Management Try for free
Tenable Security Center Request a demo
Tenable Web App Scanning Try for free
Tenable Patch Management Request a demo
Tenable Enclave Security Request a demo
Tenable Attack Surface Management Request a demo
Tenable Nessus Try for free
## AI Exposure
Tenable AI Exposure Request a demo
## OT/IoT Exposure
Tenable OT Security Request a demo
## Identity Exposure
Tenable Identity Exposure Request a demo
## Business needs
Active Directory
AI Security Posture Management (AI-SPM)
AWS security
Azure security
Cloud Security Posture Man
Talos
Microsoft Patch Tuesday for August 2022 — Snort rules and prominent vulnerabilities
blogs_talos·2022-08-09·CVSS 8.0
[HIGH] Microsoft Patch Tuesday for August 2022 — Snort rules and prominent vulnerabilities
Microsoft released its monthly security update Tuesday, disclosing more than 120 vulnerabilities across its line of products and software, the most in a single Patch Tuesday in four months.
This batch of updates also includes a fix for a new vulnerability in the Microsoft Windows Support Diagnostic Tool (MSDT) that’s actively being exploited in the wild, according to Microsoft. MSDT was already the target of the so-called “Follina” zero-day vulnerability in June.
In all, August’s Patch Tuesday includes 15 critical vulnerabilities and a single low- and moderate-severity issue. The remainder is classified as “important.”
Two of the important vulnerabilities CVE-2022-35743 and CVE-2022-34713 are remote code execution vulnerabilities in MSDT. However, only CVE-2022-34713 has been exploited
Qualys
August 2022 Patch Tuesday | Microsoft Releases 121 Vulnerabilities With 17 Critical, Plus 20 Microsoft Edge (Chromium-Based); Adobe Releases 5 Advisories, 25 Vulnerabilities With 15 Critical. | Qualys
blogs_qualys·2022-08-09·CVSS 6.5
[MEDIUM] August 2022 Patch Tuesday | Microsoft Releases 121 Vulnerabilities With 17 Critical, Plus 20 Microsoft Edge (Chromium-Based); Adobe Releases 5 Advisories, 25 Vulnerabilities With 15 Critical. | Qualys
#### Table of Contents
- Microsoft Patch Tuesday Summary
- The August 2022 Microsoft Vulnerabilities Are Classified As Follows:
- Notable Microsoft Vulnerabilities Patched
- Security Feature Bypass Vulnerabilities Addressed
- Microsoft Critical and Important Vulnerability Highlights
- Microsoft Edge | Last But Not Least
- Adobe Security Bulletins and Advisories
- About Qualys Patch Tuesday
- Qualys Threat Protection High-Rated Advisories for August 1-9, 2022
- Discover and Prioritize Vulnerabilities in Vulnerability Management Detection Response (VMDR)
- Rapid Response With Patch Management (PM)
- Evaluate Vendor-Suggested Workarounds With Policy Compliance
- Patch Tuesday is Complete.
- Qualys Monthly Webinar Series
- Join the Webinar This Month in Vulnerabilities & Patches
## Microsoft
Talos
Microsoft Patch Tuesday for August 2022 — Snort rules and prominent vulnerabilities
blogs_talos·2022-08-09·CVSS 8.0
[HIGH] Microsoft Patch Tuesday for August 2022 — Snort rules and prominent vulnerabilities
## Microsoft Patch Tuesday for August 2022 — Snort rules and prominent vulnerabilities
Microsoft released its monthly security update Tuesday, disclosing more than 120 vulnerabilities across its line of products and software, the most in a single Patch Tuesday in four months .
This batch of updates also includes a fix for a new vulnerability in the Microsoft Windows Support Diagnostic Tool (MSDT) that’s actively being exploited in the wild, according to Microsoft. MSDT was already the target of the so-called “Follina” zero-day vulnerability in June.
In all, August’s Patch Tuesday includes 15 critical vulnerabilities and a single low- and moderate-severity issue. The remainder is classified as “important.”
Two of the important vulnerabilities CVE-2022-35743 and CVE-2022-34713 are remote
Krebs
Microsoft Patch Tuesday, August 2022 Edition
blogs_krebs·2022-08-09·CVSS 8.0
[HIGH] Microsoft Patch Tuesday, August 2022 Edition
Microsoft today released updates to fix a record 141 security vulnerabilities in its Windows operating systems and related software. Once again, Microsoft is patching a zero-day vulnerability in the Microsoft Support Diagnostics Tool (MSDT), a service built into Windows. Redmond also addressed multiple flaws in Exchange Server — including one that was disclosed publicly prior to today — and it is urging organizations that use Exchange for email to update as soon as possible and to enable additional protections.
In June, Microsoft patched a vulnerability in MSDT dubbed “ Follina ” that had been used in active attacks for at least three months prior . This latest MSDT bug — CVE-2022-34713 — is a remote code execution flaw that requires convincing a target to open a booby-trapped file, such
Qualys
August 2022 Patch Tuesday | Microsoft Releases 121 Vulnerabilities With 17 Critical, Plus 20 Microsoft Edge (Chromium-Based); Adobe Releases 5 Advisories, 25 Vulnerabilities With 15 Critical.
blogs_qualys·2022-08-09·CVSS 6.5
[MEDIUM] August 2022 Patch Tuesday | Microsoft Releases 121 Vulnerabilities With 17 Critical, Plus 20 Microsoft Edge (Chromium-Based); Adobe Releases 5 Advisories, 25 Vulnerabilities With 15 Critical.
## Table of Contents
Microsoft Patch Tuesday Summary
The August 2022 Microsoft Vulnerabilities Are Classified As Follows:
Notable Microsoft Vulnerabilities Patched
Security Feature Bypass Vulnerabilities Addressed
Microsoft Critical and Important Vulnerability Highlights
Microsoft Edge | Last But Not Least
Adobe Security Bulletins and Advisories
About Qualys Patch Tuesday
Qualys Threat Protection High-Rated Advisories for August 1-9, 2022
Discover and Prioritize Vulnerabilities in Vulnerability Management Detection Response (VMDR)
Rapid Response With Patch Management (PM)
Evaluate Vendor-Suggested Workarounds With Policy Compliance
Patch Tuesday is Complete.
Qualys Monthly Webinar Series
Join the Webinar This Month in Vulnerabilities & Patches
## Microsoft Patch Tuesday Sum
Trendmicro
Microsoft Patches Zero-Day DogWalk Vulnerability
blogs_trendmicro·CVSS 7.8
CVE-2022-34713 [HIGH] Microsoft Patches Zero-Day DogWalk Vulnerability
Exploits y vulnerabilidades
## Microsoft Patches Zero-Day DogWalk Vulnerability
Microsoft has published a fix for CVE-2022-34713, a vulnerability labeled DogWalk that was first reported in 2019. DogWalk centers around the Microsoft Support Diagnostic Tool (MSDT), which was recently involved in attacks by cybercriminals and state actors using the Follina vulnerability.
By: Trend Micro Research April 03, 2026 Read time: ( words)
Save to Folio
Microsoft has published a fix for CVE-2022-34713 , a vulnerability labeled DogWalk that was first reported in 2019. The bug was originally not classified as an urgent issue, but it seems that the company reevaluated it in early August . Dogwalk centers around the Microsoft Support Diagnostic Tool (MSDT), which was recently involved in attacks by cy
Trendmicro
Microsoft Patches Zero-Day DogWalk Vulnerability
blogs_trendmicro·CVSS 7.8
CVE-2022-34713 [HIGH] Microsoft Patches Zero-Day DogWalk Vulnerability
Exploits & Vulnerabilities
# Microsoft Patches Zero-Day DogWalk Vulnerability
Microsoft has published a fix for CVE-2022-34713, a vulnerability labeled DogWalk that was first reported in 2019. DogWalk centers around the Microsoft Support Diagnostic Tool (MSDT), which was recently involved in attacks by cybercriminals and state actors using the Follina vulnerability.
By: Trend Micro Research
September 22, 2025
Read time: ( words)
Save to Folio
Microsoft has published a fix for CVE-2022-34713, a vulnerability labeled DogWalk that was first reported in 2019. The bug was originally not classified as an urgent issue, but it seems that the company reevaluated it in early August. Dogwalk centers around the Microsoft Support Diagnostic Tool (MSDT), which was recently involved in attacks by
Crowdstrike
August Patch Tuesday 2022: Updates and Analysis
blogs_crowdstrike·CVSS 7.5
CVE-2026-20929 [HIGH] August Patch Tuesday 2022: Updates and Analysis
How CrowdStrike is Accelerating Exposure Evaluation as Adversaries Gain Speed Apr 06, 2026
STARDUST CHOLLIMA Likely Compromises Axios npm Package Apr 01, 2026
Falcon for IT Supports Windows Secure Boot Certificate Lifecycle Management Apr 01, 2026
Detecting CVE-2026-20929: Kerberos Authentication Relay via CNAME Abuse Mar 31, 2026
How CrowdStrike is Accelerating Exposure Evaluation as Adversaries Gain Speed Apr 06, 2026
STARDUST CHOLLIMA Likely Compromises Axios npm Package Apr 01, 2026
Falcon for IT Supports Windows Secure Boot Certificate Lifecycle Management Apr 01, 2026
Detecting CVE-2026-20929: Kerberos Authentication Relay via CNAME Abuse Mar 31, 2026
Video Highlights the 4 Key Steps to Successful Incident Response Dec 02, 2019
Helping Non-Security Stakeholders Understand AT
Zscaler
Zscaler found Windows security vulnerabilities | 08-09-2022
blogs_zscaler·CVSS 7.3
[HIGH] Zscaler found Windows security vulnerabilities | 08-09-2022
Provide users with seamless, secure, reliable access to applications and data.
Build and run secure cloud apps, enable zero trust cloud connectivity, and protect workloads from data center to cloud.
Provide zero trust connectivity for IoT and OT devices and secure remote access to OT systems.
Provide zero trust site-to-site connectivity and reliable access to B2B apps for partners.
Industry Report
Zscaler: A Leader in the 2025 Gartner® Magic Quadrant™ for Security Service Edge (SSE)
USE CASES
INDUSTRY & MARKET SOLUTIONS
PARTNERS
TECHNOLOGY PARTNERS
Resource Center
Events & Trainings
Security Research & Services
Tools
Community & Support
CXO REVOLUTIONARIES
Amplifying the voices of real-world digital and zero trust pioneers
Discover how it began and where it’s going
Meet o
Trendmicro
Microsoft Patches Zero-Day DogWalk Vulnerability
blogs_trendmicro·CVSS 7.8
CVE-2022-34713 [HIGH] Microsoft Patches Zero-Day DogWalk Vulnerability
Ausnutzung von Schwachstellen
## Microsoft Patches Zero-Day DogWalk Vulnerability
Microsoft has published a fix for CVE-2022-34713, a vulnerability labeled DogWalk that was first reported in 2019. DogWalk centers around the Microsoft Support Diagnostic Tool (MSDT), which was recently involved in attacks by cybercriminals and state actors using the Follina vulnerability.
By: Trend Micro Research April 03, 2026 Read time: ( words)
Save to Folio
Microsoft has published a fix for CVE-2022-34713 , a vulnerability labeled DogWalk that was first reported in 2019. The bug was originally not classified as an urgent issue, but it seems that the company reevaluated it in early August . Dogwalk centers around the Microsoft Support Diagnostic Tool (MSDT), which was recently involved in attacks by
Crowdstrike
August Patch Tuesday 2022: Updates and Analysis
blogs_crowdstrike·CVSS 7.5
CVE-2026-20929 [HIGH] August Patch Tuesday 2022: Updates and Analysis
STARDUST CHOLLIMA Likely Compromises Axios npm Package Apr 01, 2026
Falcon for IT Supports Windows Secure Boot Certificate Lifecycle Management Apr 01, 2026
Detecting CVE-2026-20929: Kerberos Authentication Relay via CNAME Abuse Mar 31, 2026
How Charlotte AI AgentWorks Fuels Security's Agentic Ecosystem Mar 25, 2026
STARDUST CHOLLIMA Likely Compromises Axios npm Package Apr 01, 2026
Falcon for IT Supports Windows Secure Boot Certificate Lifecycle Management Apr 01, 2026
Detecting CVE-2026-20929: Kerberos Authentication Relay via CNAME Abuse Mar 31, 2026
How Charlotte AI AgentWorks Fuels Security's Agentic Ecosystem Mar 25, 2026
Video Highlights the 4 Key Steps to Successful Incident Response Dec 02, 2019
Helping Non-Security Stakeholders Understand ATT&CK in 10 Minutes or Less [VI
Trendmicro
Microsoft Patches Zero-Day DogWalk Vulnerability
blogs_trendmicro·CVSS 7.8
CVE-2022-34713 [HIGH] Microsoft Patches Zero-Day DogWalk Vulnerability
Exploits & Vulnerabilities
## Microsoft Patches Zero-Day DogWalk Vulnerability
Microsoft has published a fix for CVE-2022-34713, a vulnerability labeled DogWalk that was first reported in 2019. DogWalk centers around the Microsoft Support Diagnostic Tool (MSDT), which was recently involved in attacks by cybercriminals and state actors using the Follina vulnerability.
By: Trend Micro Research September 22, 2025 Read time: ( words)
Save to Folio
Microsoft has published a fix for CVE-2022-34713 , a vulnerability labeled DogWalk that was first reported in 2019. The bug was originally not classified as an urgent issue, but it seems that the company reevaluated it in early August . Dogwalk centers around the Microsoft Support Diagnostic Tool (MSDT), which was recently involved in attacks by
arXiv
A Systematic Approach to Predict the Impact of Cybersecurity Vulnerabilities Using LLMs
arxiv_fulltext·2025-10-19
A Systematic Approach to Predict the Impact of Cybersecurity Vulnerabilities Using LLMs
plain
plain
@IEEEtitlepagestyle
\@oddfoot
\@evenfoot
*3mm [width=2cm]figures/CC-by.pdf
*2mm2.5mm
This work is licensed under a Creative Commons
Attribution 4.0 International (CC BY 4.0) license.
*-69pt
A Systematic Approach to Predict the Impact of Cybersecurity Vulnerabilities Using LLMs
Anders M H
Simula & University of Oslo
Oslo, Norway
[email protected]
Pierre Lison
Norwegian Computing Center
Oslo, Norway
[email protected]
Leon Moonen
Simula Research Laboratory
Oslo, Norway
[email protected]
## Abstract
Vulnerability databases, such as the National Vulnerability Database (NVD), offer detailed descriptions of Common Vulnerabilities and Exposures (CVEs),
but often lack information on their real-world impact, such as the tactics, techniques, and procedures (TTPs) that adv
2022-08-09
Published
2022-08-09
Added to CISA KEV
Exploited in the wild