CVE-2022-21874: Windows Security Center API Remote Code Execution Vulnerability
Published Jan 11, 2022
·Updated
Windows Security Center API Remote Code Execution Vulnerability.
Affected Software
51 affected componentsFixes available
Microsoft Windows Server=20H2
Microsoft Windows Server 2019
Microsoft Windows Server 2019
Microsoft Windows 11=21H2
Microsoft Windows 11=21H2
Microsoft Windows Server 2022
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2016
Microsoft Windows 10=20H2
Microsoft Windows 10=20H2
Microsoft Windows 10=1809
Microsoft Windows 10=1809
Microsoft Windows 10=1809
Microsoft Windows 10=1607
Microsoft Windows 10=21H1
Microsoft Windows 10=21H1
Microsoft Windows 10=21H1
Microsoft Windows 10=21H2
Microsoft Windows 10=21H2
Microsoft Windows 10=21H2
Microsoft Windows 10=1909
Microsoft Windows 10=1909
Microsoft Windows 10=1909
Microsoft Windows 10
Microsoft Windows 10
Microsoft Windows 10
Microsoft Windows 10
Microsoft Windows 10=20h2
Microsoft Windows 10=20h2
Microsoft Windows 10=20h2
Microsoft Windows 10=21h1
Microsoft Windows 10=21h1
Microsoft Windows 10=21h1
Microsoft Windows 10=21h2
Microsoft Windows 10=21h2
Microsoft Windows 10=21h2
Microsoft Windows 10=1607
Microsoft Windows 10=1607
Microsoft Windows 10=1809
Microsoft Windows 10=1809
Microsoft Windows 10=1809
Microsoft Windows 10=1909
Microsoft Windows 10=1909
Microsoft Windows 10=1909
Microsoft Windows 11
Microsoft Windows 11
Microsoft Windows Server=20h2
Microsoft Windows Server=2022
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Remediation
Event History
Jan 11, 2022
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·08:22 PM
Data Sourced
via MITRE·08:22 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2022-21874?
CVE-2022-21874 is rated as critical due to its potential for remote code execution.
2
How do I fix CVE-2022-21874?
To mitigate CVE-2022-21874, apply the latest security patches from Microsoft for the affected Windows versions.
3
Which Windows versions are affected by CVE-2022-21874?
CVE-2022-21874 affects several Windows versions including Windows 10, Windows 11, and Windows Server 2016 to 2022.
4
Can CVE-2022-21874 be exploited remotely?
Yes, CVE-2022-21874 allows remote attackers to execute code on affected systems without authentication.
5
Is there an exploit available for CVE-2022-21874?
As of now, there are no public exploits available for CVE-2022-21874, but organizations should still prioritize patching the vulnerability.