ZeroHour

CVE-2022-29799

PoC
CVSS 3.1
5.5 medium
EPSS
12%p96
Published
()
Modified
Description

A vulnerability was found in networkd-dispatcher. This flaw exists because no functions are sanitized by the OperationalState or the AdministrativeState of networkd-dispatcher. This attack leads to a directory traversal to escape from the “/etc/networkd-dispatcher” base directory.

Vendors
microsoft
Products
windows defender for endpoint
Weakness
CWE-22
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news