

Rewterz Threat Advisory – Multiple Microsoft Windows Vulnerabilities
June 15, 2022
Rewterz Threat Advisory – Multiple Microsoft Office Vulnerabilities
June 15, 2022
Rewterz Threat Advisory – Multiple Microsoft Windows Vulnerabilities
June 15, 2022
Rewterz Threat Advisory – Multiple Microsoft Office Vulnerabilities
June 15, 2022Severity
High
Analysis Summary
CVE-2022-30157 CVSS:8.8
Microsoft SharePoint Server could allow a remote authenticated attacker to execute arbitrary code on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system.
CVE-2022-30158 CVSS:8
Microsoft SharePoint Server could allow a remote authenticated attacker to execute arbitrary code on the system. By persuading a victim to open specially-crafted content, an attacker could exploit this vulnerability to execute arbitrary code on the system.
Impact
- Code Execution
Indicators Of Compromise
CVE
- CVE-2022-30157
- CVE-2022-30158
Affected Vendors
Microsoft
Affected Products
- Microsoft SharePoint Server 2013 SP1
- Microsoft SharePoint Foundation 2013 SP1
- Microsoft SharePoint Enterprise Server 2016
- Microsoft SharePoint Server 2019
- Microsoft SharePoint Server Subscription Edition
Remediation
Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.