CVE-2022-30139 is a Remote Code Execution vulnerability affecting the Windows Lightweight Directory Access Protocol (LDAP) across various Windows 10, 11, and Server versions. With a CVSS score of 7.5 (HIGH), it allows an authenticated attacker to execute arbitrary code remotely with high impact on confidentiality, integrity, and availability, though it requires high attack complexity. Despite its severity and community discussion, there is no public exploit code available (Metasploit, Nuclei, ExploitDB) and it is not listed in CISA's KEV catalog. Media coverage indicates it was addressed in Microsoft's June 2022 Patch Tuesday, often mentioned alongside the "Follina" vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:x86:* | ||
20h2CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:20h2:*:*:*:*:*:*:* | ||
20h2CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:20h2:*:*:*:*:*:arm64:* | ||
20h2CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:20h2:*:*:*:*:*:x64:* | ||
20h2CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:20h2:*:*:*:*:*:x86:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.