Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-44698

89
FAUCET Score

CVE-2022-44698 is a Windows SmartScreen Security Feature Bypass Vulnerability affecting multiple versions of Windows 10, 11, and Server. The vulnerability has a CVSS score of 5.4 (MEDIUM), indicating a low attack complexity and requiring user interaction, but it can lead to limited integrity and availability impacts. This CVE is actively exploited, notably by the Magniber ransomware, and has a high EPSS score and significant community discussion, despite no public exploit code being available on platforms like Metasploit or ExploitDB.

Impacted Technologies

VendorProductVersion(s)CPE
< 10.0.14393.5582CPE matchmatch criteria
cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:*:*
< 10.0.17763.3770CPE matchmatch criteria
cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:*:*
< 10.0.19042.2364CPE matchmatch criteria
cpe:2.3:o:microsoft:windows_10_20h2:*:*:*:*:*:*:*:*
< 10.0.19043.2364CPE matchmatch criteria
cpe:2.3:o:microsoft:windows_10_21h1:*:*:*:*:*:*:*:*
< 10.0.19044.2364CPE matchmatch criteria
cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.4MEDIUM

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
LOW
Availability Impact
LOW
Exploitability Score
2.8
Impact Score
2.5
CvssVersion
3.1

Exploit Intelligence

EPSS Score
76.11%
Probability of exploitation in next 30 days
EPSS Percentile
99.5%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
Added to KEV · Dec 13, 2022
This CVE's current EPSS score of 0.7611 is in the 100th percentile among its peer group of 26,236 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (22)

microsoftpatch availablevia nvd_reference
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 1809 for 32-bit SystemsFixed in: 10.0.17763.3770
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 1809 for x64-based SystemsFixed in: 10.0.17763.3770
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 1809 for ARM64-based SystemsFixed in: 10.0.17763.3770
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2019Fixed in: 10.0.17763.3770
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 21H1 for x64-based SystemsFixed in: 10.0.19043.2364
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 21H1 for ARM64-based SystemsFixed in: 10.0.19043.2364
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 21H1 for 32-bit SystemsFixed in: 10.0.19043.2364
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2022Fixed in: 10.0.20348.1366
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 20H2 for 32-bit SystemsFixed in: 10.0.19042.2364
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 20H2 for ARM64-based SystemsFixed in: 10.0.19042.2364
View patch
microsoftpatch availablevia msrc
Product: Windows 11 version 21H2 for x64-based SystemsFixed in: 10.0.22000.1335
View patch
microsoftpatch availablevia msrc
Product: Windows 11 version 21H2 for ARM64-based SystemsFixed in: 10.0.22000.1335
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 21H2 for 32-bit SystemsFixed in: 10.0.19044.2364
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 21H2 for ARM64-based SystemsFixed in: 10.0.19044.2364
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 21H2 for x64-based SystemsFixed in: 10.0.19044.2364
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 22H2 for x64-based SystemsFixed in: 10.0.19045.2364
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 22H2 for ARM64-based SystemsFixed in: 10.0.19045.2364
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 22H2 for 32-bit SystemsFixed in: 10.0.19045.2364
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 1607 for 32-bit SystemsFixed in: 10.0.14393.5582
View patch
microsoftpatch availablevia msrc
Product: Windows 10 Version 1607 for x64-based SystemsFixed in: 10.0.14393.5582
View patch
microsoftpatch availablevia msrc
Product: Windows Server 2016Fixed in: 10.0.14393.5582
View patch

Vendor Advisories (1)

microsoft2022-Dec/CVE-2022-44698Moderate

Windows SmartScreen Security Feature Bypass Vulnerability

Dec 13, 2022

References

cisa.gov / known-exploited-vulnerabilities-catalog
US Government Resource
msrc.microsoft.com / update-guide/vulnerability/CVE-2022-44698
PatchVendor Advisory