logo

CVE-2022-30190 Updated Guidance

ID: 0debb7ee-9a75-5020-a72c-a490bbb11465

STIX ID: report--0debb7ee-9a75-5020-a72c-a490bbb11465

Feed Name: Arctic Wolf Blog

Threat Score
85/100

Date Published: 2022-06-16

Date Updated: 2026-04-26

...
...

**CVE-2022-30190 (MSDT 'Follina') — Active RCE via Word/RTF:** A zero-day remote code execution vulnerability in the Microsoft Support Diagnostic Tool (MSDT) is being actively exploited by malicious documents that call MSDT via a URL protocol. Successful exploitation requires a user to open or preview a crafted .doc/.docx or .rtf file (or click 'Enable editing'), allowing an attacker to download payloads and execute arbitrary code; Arctic Wolf rates the vulnerability high risk and urges immediate patching or application of Microsoft’s workaround.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.