CVE detail
CVE-2022-23278
Microsoft Defender for Endpoint Spoofing Vulnerability
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 13.9 · diversity 8.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
3 source links · newest first
As part of its March 2022 security updates, Microsoft on Tuesday patched a class spoofing vulnerability in Defender for Endpoint and warned of its impact on all platforms.
newswww.securityweek.comMar 9, 2022, 11:37 AMMicrosoft March 2022 Patch Tuesday security updates address 89 vulnerabilities in multiple products, including 3 zero-days. Microsoft March 2022 Patch Tuesday security updates address 89 vulnerabilities in multiple products, including Microsoft Windows components, Azure and Azure DevOps, Azure Sphere, Internet Explorer and Edge (EdgeHTML), Exchange Server, Office and Office Services and Web Apps, SharePoint Server, […]
newssecurityaffairs.comMar 9, 2022, 12:26 AMMicrosoft marks March 2022 Patch Tuesday with patches for 71 CVE-numbered vulnerabilities, including three previously unknown “critical” ones and three “important” ones that were already public (but not actively exploited by attackers). Vulnerabilities of note CVE-2022-21990, a publicly known Remote Desktop Client remote code execution (RCE) flaw, should be patched quickly. “If an attacker can lure an affected RDP client to connect to their RDP server, the attacker could trigger code execution on the targeted … More →
newswww.helpnetsecurity.comMar 8, 2022, 7:31 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2022-29141CVSS 8.8 · High
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
- CVE-2022-29139CVSS 8.8 · High
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
- CVE-2022-29137CVSS 8.8 · High
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
- CVE-2022-29132CVSS 7.8 · High
Windows Print Spooler Elevation of Privilege Vulnerability
2 mentions - CVE-2022-29131CVSS 8.8 · High
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
- CVE-2022-29130CVSS 9.8 · Critical
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability