Microsoft Windows Support Diagnostic Tool是美国微软(Microsoft)公司的收集信息以发送给 Microsoft 支持的工具。 Microsoft Windows Support Diagnostic Tool (MSDT)存在操作系统命令注入漏洞。以下产品和版本受到影响:Windows 10 Version 1809 for 32-bit Systems,Windows 10 Version 1809 for x64-based Systems,Windows
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Windows 10 Version 1507 | 10.0.10240.0< 10.0.10240.19325 |
affected |
| Microsoft | Windows 10 Version 1607 | 10.0.14393.0< 10.0.14393.5192 |
affected |
| Microsoft | Windows 10 Version 1809 | 10.0.17763.0< 10.0.17763.3046 |
affected |
10.0.0< 10.0.17763.3046 |
affected | ||
| Microsoft | Windows 10 Version 20H2 | 10.0.0< 10.0.19042.1766 |
affected |
| Microsoft | Windows 10 Version 21H1 | 10.0.0< 10.0.19043.1766 |
affected |
| Microsoft | Windows 10 Version 21H2 | 10.0.19043.0< 10.0.19044.1766 |
affected |
| Microsoft | Windows 11 version 21H2 | 10.0.0< 10.0.22000.739 |
affected |
| Microsoft | Windows 7 | 6.1.0< 6.1.7601.25984 |
affected |
| Microsoft | Windows 7 Service Pack 1 | 6.1.0< 6.1.7601.25984 |
affected |
| Microsoft | Windows 8.1 | 6.3.0< 6.3.9600.20402 |
affected |
| Microsoft | Windows Server 2008 R2 Service Pack 1 | 6.1.7601.0< 6.1.7601.25984 |
affected |
| Microsoft | Windows Server 2008 R2 Service Pack 1 (Server Core installation) | 6.1.7601.0< 6.1.7601.25984 |
affected |
| Microsoft | Windows Server 2012 | 6.2.9200.0< 6.2.9200.23736 |
affected |
| Microsoft | Windows Server 2012 (Server Core installation) | 6.2.9200.0< 6.2.9200.23736 |
affected |
| Microsoft | Windows Server 2012 R2 | 6.3.9600.0< 6.3.9600.20402 |
affected |
| Microsoft | Windows Server 2012 R2 (Server Core installation) | 6.3.9600.0< 6.3.9600.20402 |
affected |
| Microsoft | Windows Server 2016 | 10.0.14393.0< 10.0.14393.5192 |
affected |
| Microsoft | Windows Server 2016 (Server Core installation) | 10.0.14393.0< 10.0.14393.5192 |
affected |
| Microsoft | Windows Server 2019 | 10.0.17763.0< 10.0.17763.3046 |
affected |
| Microsoft | Windows Server 2019 (Server Core installation) | 10.0.17763.0< 10.0.17763.3046 |
affected |
| Microsoft | Windows Server 2022 | 10.0.20348.0< 10.0.20348.770 |
affected |
| Microsoft | Windows Server version 20H2 | 10.0.0< 10.0.19042.1766 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | CVE-2022-30190 (Exploit Microsoft) | https://github.com/flux10n/CVE-2022-30190 | POC Details |
| 2 | POC CVE-2022-30190 : CVE 0-day MS Offic RCE aka msdt follina | https://github.com/JMousqueton/PoC-CVE-2022-30190 | POC Details |
| 3 | CVE-2022-30190 | https://github.com/zkl21hoang/msdt-follina-office-rce | POC Details |
| 4 | CVE-2022-30190 Follina POC | https://github.com/onecloudemoji/CVE-2022-30190 | POC Details |
| 5 | None | https://github.com/2867a0/CVE-2022-30190 | POC Details |
| 6 | Microsoft Office Word Rce 复现(CVE-2022-30190) | https://github.com/doocop/CVE-2022-30190 | POC Details |
| 7 | This Repository Talks about the Follina MSDT from Defender Perspective | https://github.com/archanchoudhury/MSDT_CVE-2022-30190 | POC Details |
| 8 | Aka Follina = benign POC. | https://github.com/rickhenderson/cve-2022-30190 | POC Details |
| 9 | Picking up processes that have triggered ASR related to CVE-2022-30190 | https://github.com/DOV3Y/CVE-2022-30190-ASR-Senintel-Process-Pickup | POC Details |
| 10 | CVE-2022-30190- A Zero-Click RCE Vulnerability In MSDT | https://github.com/kdk2933/msdt-CVE-2022-30190 | POC Details |
| 11 | Microsoft Sentinel analytic rule and hunting queries in ASIM for activity of MSDT and CVE-2022-30190. | https://github.com/sentinelblue/CVE-2022-30190 | POC Details |
| 12 | None | https://github.com/aymankhder/MSDT_CVE-2022-30190-follina- | POC Details |
| 13 | CVE-2022-30190 remediation via removal of ms-msdt from Windows registry | https://github.com/PaddlingCode/cve-2022-30190 | POC Details |
| 14 | Follina MS-MSDT 0-day MS Office RCE (CVE-2022-30190) PoC in Go | https://github.com/dwisiswant0/gollina | POC Details |
| 15 | None | https://github.com/hscorpion/CVE-2022-30190 | POC Details |
| 16 | Just another PoC for the new MSDT-Exploit | https://github.com/drgreenthumb93/CVE-2022-30190-follina | POC Details |
| 17 | None | https://github.com/mitespsoc/CVE-2022-30190-POC | POC Details |
| 18 | None | https://github.com/Vaisakhkm2625/MSDT-0-Day-CVE-2022-30190-Poc | POC Details |
| 19 | An NSIS script that helps deploy and roll back the mitigation registry patch for CVE-2022-30190 as recommended by Microsoft | https://github.com/rouben/CVE-2022-30190-NSIS | POC Details |
| 20 | Removes the ability for MSDT to run, in response to CVE-2022-30190 (Follina) | https://github.com/Cosmo121/Follina-Remediation | POC Details |
| 21 | CVE-2022-30190 or "Follina" 0day proof of concept | https://github.com/rayorole/CVE-2022-30190 | POC Details |
| 22 | Proof of Concept zu MSDT-Follina - CVE-2022-30190. ÜBERPRÜFUNG DER WIRKSAMKEIT VON MICROSOFT DEFNEDER IN DER JEWEILS AKTUELLSTEN WINDOWS 10 VERSION. | https://github.com/ImproveCybersecurityJaro/2022_PoC-MSDT-Follina-CVE-2022-30190 | POC Details |
| 23 | MS-MSDT Follina CVE-2022-30190 PoC document generator | https://github.com/sudoaza/CVE-2022-30190 | POC Details |
| 24 | MSDT protocol disabler (CVE-2022-30190 patch tool) | https://github.com/gamingwithevets/msdt-disable | POC Details |
| 25 | A tool written in Go that scans files & directories for the Follina exploit (CVE-2022-30190) | https://github.com/ErrorNoInternet/FollinaScanner | POC Details |
| 26 | None | https://github.com/ITMarcin2211/CVE-2022-30190 | POC Details |
| 27 | Mitigates the "Folina"-ZeroDay (CVE-2022-30190) | https://github.com/derco0n/mitigate-folina | POC Details |
| 28 | CVE-2022-30190-follina.py-修改版,可以自定义word模板,方便实战中钓鱼使用。 | https://github.com/komomon/CVE-2022-30190-follina-Office-MSDT-Fixed | POC Details |
| 29 | None | https://github.com/gyaansastra/CVE-2022-30190 | POC Details |
| 30 | None | https://github.com/swaiist/CVE-2022-30190-Fix | POC Details |
No public POC found.
Login to generate AI POC| CVE-2022-30127 | 8.3 HIGH | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2022-30128 | 8.3 HIGH | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2022-26905 | 4.3 MEDIUM | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
No comments yet