CVE-2022-26830 is a remote code execution vulnerability affecting Microsoft Windows 11 and Windows Server 2022, specifically within the DiskUsage.exe utility. With a CVSS score of 7.5 (HIGH), exploitation requires user interaction (UI:R) and has high impact on confidentiality, integrity, and availability (C:H/I:H/A:H), though it has high attack complexity (AC:H). There is no evidence of active exploitation (KEV: No), nor are there public exploit modules like Metasploit or Nuclei, and community discussion and media coverage are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_11:-:*:*:*:*:*:arm64:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_11:-:*:*:*:*:*:x64:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2022:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.4 Bluesky, 0.2 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.6 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.