CVE-2022-30190
Essential information
- Published
- 14/06/2022 02:00
- Modified
- 27/05/2026 21:40
- Author
- Cybersecurity and Infrastructure Security Agency
- Creator
- Cybersecurity and Infrastructure Security Agency
- CISA KEV
- Yes
- CWE
- —
- CVSS vector
- — — —
Description
A remote code execution vulnerability exists when MSDT is called using the URL protocol from a calling application such as Word. An attacker who successfully exploits this vulnerability can run code with the privileges of the calling application.
NVD status
- NVD
- View on NVD