CVE-2022-21972: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-23270.
Other sources
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2022-21972?
CVE-2022-21972 has a critical severity rating as it allows for remote code execution via the Point-to-Point Tunneling Protocol.
How do I fix CVE-2022-21972?
To fix CVE-2022-21972, apply the appropriate patches released by Microsoft for affected versions of Windows.
Which software versions are affected by CVE-2022-21972?
CVE-2022-21972 impacts various Windows versions, including Windows 10, Windows 11, and several Windows Server editions.
What types of attacks may exploit CVE-2022-21972?
An attacker could exploit CVE-2022-21972 to execute arbitrary code on the target system, potentially gaining full control.
Is there a workaround for CVE-2022-21972 if I cannot apply the patches immediately?
While it is recommended to patch promptly, temporary network isolation of affected systems may mitigate risks until updates can be applied.