CVE-2022-35834Microsoft Windows 10 Version 1507 vulnerability

4 documents4 sources
Severity
8.8HIGHNVD
EPSS
13.8%
top 5.70%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 13
Latest updateSep 14

Description

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages19 packages

CVEListV5microsoft/windows_server_20126.2.9200.06.2.9200.23865
CVEListV5microsoft/windows_server_201610.0.14393.010.0.14393.5356
CVEListV5microsoft/windows_server_201910.0.17763.010.0.17763.3406
CVEListV5microsoft/windows_server_202210.0.20348.010.0.20348.1006
CVEListV5microsoft/windows_server_2012_r26.3.9600.06.3.9600.20571

🔴Vulnerability Details

2
GHSA
GHSA-j3hf-fmx6-5vv3: Microsoft OLE DB Provider for SQL Server Remote Code Execution Vulnerability2022-09-14
CVEList
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability2022-09-13

📋Vendor Advisories

1
Microsoft
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability2022-09-13
CVE-2022-35834 — Microsoft vulnerability | cvebase