CVE-2022-21989

high

Description

Windows Kernel Elevation of Privilege Vulnerability

From the Tenable Blog

Microsoft’s February 2022 Patch Tuesday Addresses 48 CVEs (CVE-2022-21989)
Microsoft’s February 2022 Patch Tuesday Addresses 48 CVEs (CVE-2022-21989)

Published: 2022-02-08

Microsoft addresses 48 CVEs in its February 2022 Patch Tuesday release, including one zero-day vulnerability that was publicly disclosed, but not exploited in the wild.

References

https://www.tenable.com/cyber-exposure/tenable-2022-threat-landscape-report

https://www.tenable.com/blog/microsofts-february-2022-patch-tuesday-addresses-48-cves-cve-2022-21989

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-21989

Details

Source: Mitre, NVD

Published: 2022-02-09

Updated: 2024-11-21

Risk Information

CVSS v2

Base Score: 6.9

Vector: CVSS2#AV:L/AC:M/Au:N/C:C/I:C/A:C

Severity: Medium

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

Severity: High