Microsoft Windows Support Diagnostic Tool是美国微软(Microsoft)公司的收集信息以发送给 Microsoft 支持的工具。 Microsoft Windows Support Diagnostic Tool (MSDT)存在操作系统命令注入漏洞。以下产品和版本受到影响:Windows 10 Version 1809 for 32-bit Systems,Windows 10 Version 1809 for x64-based Systems,Windows
| 厂商 | 产品 | 版本范围 | 状态 |
|---|---|---|---|
| Microsoft | Windows 10 Version 1507 | 10.0.10240.0< 10.0.10240.19325 |
affected |
| Microsoft | Windows 10 Version 1607 | 10.0.14393.0< 10.0.14393.5192 |
affected |
| Microsoft | Windows 10 Version 1809 | 10.0.17763.0< 10.0.17763.3046 |
affected |
10.0.0< 10.0.17763.3046 |
affected | ||
| Microsoft | Windows 10 Version 20H2 | 10.0.0< 10.0.19042.1766 |
affected |
| Microsoft | Windows 10 Version 21H1 | 10.0.0< 10.0.19043.1766 |
affected |
| Microsoft | Windows 10 Version 21H2 | 10.0.19043.0< 10.0.19044.1766 |
affected |
| Microsoft | Windows 11 version 21H2 | 10.0.0< 10.0.22000.739 |
affected |
| Microsoft | Windows 7 | 6.1.0< 6.1.7601.25984 |
affected |
| Microsoft | Windows 7 Service Pack 1 | 6.1.0< 6.1.7601.25984 |
affected |
| Microsoft | Windows 8.1 | 6.3.0< 6.3.9600.20402 |
affected |
| Microsoft | Windows Server 2008 R2 Service Pack 1 | 6.1.7601.0< 6.1.7601.25984 |
affected |
| Microsoft | Windows Server 2008 R2 Service Pack 1 (Server Core installation) | 6.1.7601.0< 6.1.7601.25984 |
affected |
| Microsoft | Windows Server 2012 | 6.2.9200.0< 6.2.9200.23736 |
affected |
| Microsoft | Windows Server 2012 (Server Core installation) | 6.2.9200.0< 6.2.9200.23736 |
affected |
| Microsoft | Windows Server 2012 R2 | 6.3.9600.0< 6.3.9600.20402 |
affected |
| Microsoft | Windows Server 2012 R2 (Server Core installation) | 6.3.9600.0< 6.3.9600.20402 |
affected |
| Microsoft | Windows Server 2016 | 10.0.14393.0< 10.0.14393.5192 |
affected |
| Microsoft | Windows Server 2016 (Server Core installation) | 10.0.14393.0< 10.0.14393.5192 |
affected |
| Microsoft | Windows Server 2019 | 10.0.17763.0< 10.0.17763.3046 |
affected |
| Microsoft | Windows Server 2019 (Server Core installation) | 10.0.17763.0< 10.0.17763.3046 |
affected |
| Microsoft | Windows Server 2022 | 10.0.20348.0< 10.0.20348.770 |
affected |
| Microsoft | Windows Server version 20H2 | 10.0.0< 10.0.19042.1766 |
affected |
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| # | POC 描述 | 源链接 | 神龙链接 |
|---|---|---|---|
| 1 | CVE-2022-30190 (Exploit Microsoft) | https://github.com/flux10n/CVE-2022-30190 | POC详情 |
| 2 | POC CVE-2022-30190 : CVE 0-day MS Offic RCE aka msdt follina | https://github.com/JMousqueton/PoC-CVE-2022-30190 | POC详情 |
| 3 | CVE-2022-30190 | https://github.com/zkl21hoang/msdt-follina-office-rce | POC详情 |
| 4 | CVE-2022-30190 Follina POC | https://github.com/onecloudemoji/CVE-2022-30190 | POC详情 |
| 5 | None | https://github.com/2867a0/CVE-2022-30190 | POC详情 |
| 6 | Microsoft Office Word Rce 复现(CVE-2022-30190) | https://github.com/doocop/CVE-2022-30190 | POC详情 |
| 7 | This Repository Talks about the Follina MSDT from Defender Perspective | https://github.com/archanchoudhury/MSDT_CVE-2022-30190 | POC详情 |
| 8 | Aka Follina = benign POC. | https://github.com/rickhenderson/cve-2022-30190 | POC详情 |
| 9 | Picking up processes that have triggered ASR related to CVE-2022-30190 | https://github.com/DOV3Y/CVE-2022-30190-ASR-Senintel-Process-Pickup | POC详情 |
| 10 | CVE-2022-30190- A Zero-Click RCE Vulnerability In MSDT | https://github.com/kdk2933/msdt-CVE-2022-30190 | POC详情 |
| 11 | Microsoft Sentinel analytic rule and hunting queries in ASIM for activity of MSDT and CVE-2022-30190. | https://github.com/sentinelblue/CVE-2022-30190 | POC详情 |
| 12 | None | https://github.com/aymankhder/MSDT_CVE-2022-30190-follina- | POC详情 |
| 13 | CVE-2022-30190 remediation via removal of ms-msdt from Windows registry | https://github.com/PaddlingCode/cve-2022-30190 | POC详情 |
| 14 | Follina MS-MSDT 0-day MS Office RCE (CVE-2022-30190) PoC in Go | https://github.com/dwisiswant0/gollina | POC详情 |
| 15 | None | https://github.com/hscorpion/CVE-2022-30190 | POC详情 |
| 16 | Just another PoC for the new MSDT-Exploit | https://github.com/drgreenthumb93/CVE-2022-30190-follina | POC详情 |
| 17 | None | https://github.com/mitespsoc/CVE-2022-30190-POC | POC详情 |
| 18 | None | https://github.com/Vaisakhkm2625/MSDT-0-Day-CVE-2022-30190-Poc | POC详情 |
| 19 | An NSIS script that helps deploy and roll back the mitigation registry patch for CVE-2022-30190 as recommended by Microsoft | https://github.com/rouben/CVE-2022-30190-NSIS | POC详情 |
| 20 | Removes the ability for MSDT to run, in response to CVE-2022-30190 (Follina) | https://github.com/Cosmo121/Follina-Remediation | POC详情 |
| 21 | CVE-2022-30190 or "Follina" 0day proof of concept | https://github.com/rayorole/CVE-2022-30190 | POC详情 |
| 22 | Proof of Concept zu MSDT-Follina - CVE-2022-30190. ÜBERPRÜFUNG DER WIRKSAMKEIT VON MICROSOFT DEFNEDER IN DER JEWEILS AKTUELLSTEN WINDOWS 10 VERSION. | https://github.com/ImproveCybersecurityJaro/2022_PoC-MSDT-Follina-CVE-2022-30190 | POC详情 |
| 23 | MS-MSDT Follina CVE-2022-30190 PoC document generator | https://github.com/sudoaza/CVE-2022-30190 | POC详情 |
| 24 | MSDT protocol disabler (CVE-2022-30190 patch tool) | https://github.com/gamingwithevets/msdt-disable | POC详情 |
| 25 | A tool written in Go that scans files & directories for the Follina exploit (CVE-2022-30190) | https://github.com/ErrorNoInternet/FollinaScanner | POC详情 |
| 26 | None | https://github.com/ITMarcin2211/CVE-2022-30190 | POC详情 |
| 27 | Mitigates the "Folina"-ZeroDay (CVE-2022-30190) | https://github.com/derco0n/mitigate-folina | POC详情 |
| 28 | CVE-2022-30190-follina.py-修改版,可以自定义word模板,方便实战中钓鱼使用。 | https://github.com/komomon/CVE-2022-30190-follina-Office-MSDT-Fixed | POC详情 |
| 29 | None | https://github.com/gyaansastra/CVE-2022-30190 | POC详情 |
| 30 | None | https://github.com/swaiist/CVE-2022-30190-Fix | POC详情 |
未找到公开 POC。
登录以生成 AI POC| CVE-2022-30127 | 8.3 HIGH | Google Chrome 竞争条件问题漏洞 |
| CVE-2022-30128 | 8.3 HIGH | Google Chrome 竞争条件问题漏洞 |
| CVE-2022-26905 | 4.3 MEDIUM | Google Chrome 安全漏洞 |
暂无评论