๐Ÿ” CVE Alert

CVE-2022-37976

HIGH 8.8

Active Directory Certificate Services Elevation of Privilege Vulnerability

CVSS Score
8.8
EPSS Score
0.0%
EPSS Percentile
0th

Active Directory Certificate Services Elevation of Privilege Vulnerability

Vendor microsoft
Product windows server 2019
Ecosystems
Industries
TechnologyEnterprise
Published Oct 11, 2022
Last Updated Jan 2, 2025
Stay Ahead of the Next One

Get instant alerts for microsoft windows server 2019

Be the first to know when new high vulnerabilities affecting microsoft windows server 2019 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Microsoft / Windows Server 2019
10.0.17763.0 < 10.0.17763.3532
Microsoft / Windows Server 2019 (Server Core installation)
10.0.17763.0 < 10.0.17763.3532
Microsoft / Windows Server 2022
10.0.20348.0 < 10.0.20348.1129
Microsoft / Windows Server 2016
10.0.14393.0 < 10.0.14393.5427
Microsoft / Windows Server 2016 (Server Core installation)
10.0.14393.0 < 10.0.14393.5427
Microsoft / Windows Server 2008 Service Pack 2
6.0.6003.0 < 6.0.6003.21721
Microsoft / Windows Server 2008 Service Pack 2 (Server Core installation)
6.0.6003.0 < 6.0.6003.21721
Microsoft / Windows Server 2008 Service Pack 2
6.0.6003.0 < 6.0.6003.21721
Microsoft / Windows Server 2008 R2 Service Pack 1
6.1.7601.0 < 6.1.7601.26174
Microsoft / Windows Server 2008 R2 Service Pack 1 (Server Core installation)
6.1.7601.0 < 6.1.7601.26174
Microsoft / Windows Server 2012
6.2.9200.0 < 6.2.9200.23920
Microsoft / Windows Server 2012 (Server Core installation)
6.2.9200.0 < 6.2.9200.23920
Microsoft / Windows Server 2012 R2
6.3.9600.0 < 6.3.9600.20625
Microsoft / Windows Server 2012 R2 (Server Core installation)
6.3.9600.0 < 6.3.9600.20625

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
msrc.microsoft.com: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-37976 portal.msrc.microsoft.com: https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-37976