Microsoft Network Device Enrollment Service(NDES)是美国微软(Microsoft)公司的允许在没有域凭据的情况下运行的路由器和其他网络设备上的软件获取基于简单证书注册协议 (SCEP) 的证书。 Microsoft Network Device Enrollment Service (NDES)存在安全漏洞。以下产品和版本受到影响:Windows Server 2019,Windows Server 2019 (Server Core installatio
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Windows Server 2019 | 10.0.17763.0 ~ 10.0.17763.3406 | - |
|
| Microsoft | Windows Server 2019 (Server Core installation) | 10.0.17763.0 ~ 10.0.17763.3406 | - |
|
| Microsoft | Windows Server 2022 | 10.0.20348.0 ~ 10.0.20348.1006 | - |
|
| Microsoft | Windows Server 2016 | 10.0.14393.0 ~ 10.0.14393.5356 | - |
|
| Microsoft | Windows Server 2016 (Server Core installation) | 10.0.14393.0 ~ 10.0.14393.5356 | - |
|
| Microsoft | Windows Server 2012 R2 | 6.3.9600.0 ~ 6.3.9600.20571 | - |
|
| Microsoft | Windows Server 2012 R2 (Server Core installation) | 6.3.9600.0 ~ 6.3.9600.20571 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-34721 | 9.8 CRITICAL | Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerabilit |
| CVE-2022-34718 | 9.8 CRITICAL | Windows TCP/IP Remote Code Execution Vulnerability |
| CVE-2022-34722 | 9.8 CRITICAL | Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerabilit |
| CVE-2022-34734 | 8.8 HIGH | Microsoft ODBC Driver Remote Code Execution Vulnerability |
| CVE-2022-34731 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2022-34732 | 8.8 HIGH | Microsoft ODBC Driver Remote Code Execution Vulnerability |
| CVE-2022-34733 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2022-38009 | 8.8 HIGH | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2022-35823 | 8.8 HIGH | Microsoft SharePoint Remote Code Execution Vulnerability |
| CVE-2022-35805 | 8.8 HIGH | Microsoft Dynamics CRM (on-premises) Remote Code Execution Vulnerability |
| CVE-2022-38008 | 8.8 HIGH | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2022-37961 | 8.8 HIGH | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2022-35834 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2022-34727 | 8.8 HIGH | Microsoft ODBC Driver Remote Code Execution Vulnerability |
| CVE-2022-34726 | 8.8 HIGH | Microsoft ODBC Driver Remote Code Execution Vulnerability |
| CVE-2022-35835 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2022-35841 | 8.8 HIGH | Windows Enterprise App Management Service Remote Code Execution Vulnerability |
| CVE-2022-34730 | 8.8 HIGH | Microsoft ODBC Driver Remote Code Execution Vulnerability |
| CVE-2022-35840 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2022-35836 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
Showing top 20 of 63 CVEs. View all on vendor page → →
No comments yet