CVE-2022-30190 Updated Guidance
ID: 0debb7ee-9a75-5020-a72c-a490bbb11465
STIX ID: report--0debb7ee-9a75-5020-a72c-a490bbb11465
Feed Name: Arctic Wolf Blog
**CVE-2022-30190 (MSDT 'Follina') — Active RCE via Word/RTF:** A zero-day remote code execution vulnerability in the Microsoft Support Diagnostic Tool (MSDT) is being actively exploited by malicious documents that call MSDT via a URL protocol. Successful exploitation requires a user to open or preview a crafted .doc/.docx or .rtf file (or click 'Enable editing'), allowing an attacker to download payloads and execute arbitrary code; Arctic Wolf rates the vulnerability high risk and urges immediate patching or application of Microsoft’s workaround.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
