4 FAQs about Cve 2022 30190 msdt

Is cve-2022-30190 a Microsoft support diagnostic tool vulnerability?

Microsoft has reported active exploitation of this vulnerability in the wild. CISA urges users and administrators to review Microsoft's Guidance for CVE-2022-30190 Microsoft Support Diagnostic Tool Vulnerability and apply the necessary workaround. This product is provided subject to this Notification and this Privacy & Use policy.

What is Microsoft 'Follina' CVE 2022-30190?

Microsoft has released workaround guidance to address a remote code execution (RCE) vulnerability—CVE-2022-30190, known as "Follina"—affecting the Microsoft Support Diagnostic Tool (MSDT) in Windows. A remote, unauthenticated attacker could exploit this vulnerability to take control of an affected system.

What is CVE 2022-30190?

CVE-2022-30190, also known as Follina, is a critical vulnerability in the Microsoft Windows Support Diagnostic Tool (MSDT). MSDT is a built-in feature found in various Windows operating systems. Like a mechanic for your computer, it detects problems and conducts routine examinations to ensure smooth performance.

How will CVE 2022-30190 affect Windows 10?

CVE-2022-30190 has the potential to have significant impact due to its ease of exploitation and ability to bypass Protected View, along with the availability of new PoC code and the lack of a security fix. Administrators and users should monitor updates from Microsoft and apply the patch as soon as it becomes available.

View/Download Cve 2022 30190 msdt [PDF]

PDF version includes complete article with source references. Suitable for printing and offline reading.