Rapid7 Vulnerability & Exploit Database

Microsoft Windows: CVE-2022-26937: Windows Network File System Remote Code Execution Vulnerability

Free InsightVM Trial No Credit Card Necessary
2024 Attack Intel Report Latest research by Rapid7 Labs
Back to Search

Microsoft Windows: CVE-2022-26937: Windows Network File System Remote Code Execution Vulnerability

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
05/10/2022
Created
05/11/2022
Added
05/10/2022
Modified
07/22/2024

Description

Windows Network File System Remote Code Execution Vulnerability.

Solution(s)

  • microsoft-windows-windows_server_2022-21h2-kb5013944
  • microsoft-windows-windows_server_2022-22h2-kb5013944
  • msft-kb5013941-59152f2c-dbc8-4ae8-b878-8f600a953869
  • msft-kb5013942-4c8d68e3-6993-47d2-bbe0-f172a4c80a9c
  • msft-kb5013952-4c2e40d9-1607-4a6c-a9ef-e73eeb2f5074
  • msft-kb5013999-1617125e-5d17-41ac-9c67-56c6a27bb3a7
  • msft-kb5014001-8b2141d1-4d92-4c17-9cf9-f5ccfb095cfe
  • msft-kb5014006-8b4476db-9336-4f84-8603-d7d805ceb0bf
  • msft-kb5014006-f9386712-ed29-4038-955c-4ca0883b07b7
  • msft-kb5014018-12124b3d-b5f7-4aba-9df2-974626b0290f

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;