当前位置:网站首页>Microsoft Office Word 远程命令执行漏洞(CVE-2022-30190)分析与利用
Microsoft Office Word 远程命令执行漏洞(CVE-2022-30190)分析与利用
2022-06-25 06:41:00 【千里ZLP】
一、漏洞简介
CVE-2022-30190漏洞在2022年5月27日,由nao_sec发现了一个从白俄罗斯IP上传到VirusTotal的恶意Word文档。该文档使用 Microsoft Word 远程模板功能链接恶意 HTML 文件,Winword.exe 程序处理该恶意 HTML 文件中的 js 代码时发现其中使用”ms-msdt”协议的 URL, 随即启动 msdt.exe 程序(Microsoft Support Diagnostics Tool)处理该 URL,导致内嵌在 URL 中的 powershell 命令得到执行。
2022年5月30日,微软公布该漏洞编号 CVE-2022-30190。
漏洞状态
漏洞细节 | 漏洞POC | 漏洞EXP | 在野利用 |
边栏推荐
- 【批處理DOS-CMD命令-匯總和小結】-cmd擴展命令、擴展功能(cmd /e:on、cmd /e:off)
- Redis learning notes
- MySQL facet 01
- STL教程4-输入输出流和对象序列化
- 搞清信息化是什么,让企业转型升级走上正确的道路
- Collection of common terms and meanings in forestry investigation based on lidar
- CPDA|数据分析师成长之路如何起步?
- Introduction to Sichuan Tuwei ca-is3082wx isolated rs-485/rs-422 transceiver
- test
- IAR compiler flashback
猜你喜欢

Ns32f103c8t6 can perfectly replace stm32f103c8t6

Distributed quorum NWR of the alchemy furnace of the Supreme Master

Chuantu microelectronics ca-if1051 can-fd transceiver

realsense d455 semantic_ Slam implements semantic octree mapping

点云智绘在智慧工地中的应用

Mysql database import SQL file display garbled code
![Insert and sort the linked list [dummy unified operation + broken chain core - passive node]](/img/2a/ccb1145d2b4f9fbd8d0812deace93b.png)
Insert and sort the linked list [dummy unified operation + broken chain core - passive node]

VectorDraw Developer Framework 10.10
![Notes: [open class] neural network and deep learning -- tensorflow2.0 actual combat [Chinese course]](/img/ea/3eba7e4a433b0c501f9b207641dc6a.jpg)
Notes: [open class] neural network and deep learning -- tensorflow2.0 actual combat [Chinese course]

Chuantu microelectronics high speed and high performance rs-485/422 transceiver series
随机推荐
Keil and Proteus joint commissioning
[batch dos-cmd command - summary and summary] - file and directory operation commands (MD, RD, xcopy, dir, CD, set, move, copy, del, type, sort)
[QT] shortcut key
STL教程4-输入输出流和对象序列化
WinForm实现窗口始终在顶层
Elk + filebeat log parsing, log warehousing optimization, logstash filter configuration attribute
Distributed quorum NWR of the alchemy furnace of the Supreme Master
Misunderstanding of switching triode
国外LEAD域名邮箱获取途径
VectorDraw Web Library 10.10
57. 插入区间
Runtime——methods成员变量,cache成员变量
Function template_ Class template
Sichuan earth microelectronics ca-is1300 isolated operational amplifier for current detection is on the market
C#获取exe的版本号-文件版本and程序集版本
Usememo simulation usecallback
C reads XML on the web
Runtime - Methods member variable, cache member variable
My debut is finished!
双三次差值bicubic