Rewterz
Rewterz Threat Advisory – CVE-2022-20845 – Cisco Network Convergence System 4000 Series Vulnerability
September 18, 2022
Rewterz
Rewterz Threat Advisory – CVE-2022-37962 – Microsoft PowerPoint Vulnerability
September 18, 2022

Rewterz Threat Advisory – CVE-2022-38020 – Microsoft Visual Studio Code Vulnerability

Severity

High

Analysis Summary

CVE-2022-38020

Microsoft Visual Studio Code could allow a remote authenticated attacker to gain elevated privileges on the system. By persuading a victim to open a specially crafted file, an attacker could exploit this vulnerability to execute arbitrary code in the context of another Visual Studio Code user on the vulnerable system.

Impact

  • Privilege Escalation

Indicators Of Compromise

CVE

  • CVE-2022-38020

Affected Vendors

  • Microsoft

Affected Products

  • Microsoft Visual Studio Code

Remediation

Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.

Microsoft Security TechCenter