First published: Tue Sep 20 2022(Updated: )
Microsoft Endpoint Configuration Manager Spoofing Vulnerability.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft System Center Configuration Manager | >=2103<=2207 | |
Microsoft System Center Configuration Manager |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-37972 is categorized as a spoofing vulnerability, which can potentially allow attackers to impersonate valid users.
To fix CVE-2022-37972, ensure that you apply the latest available patches from Microsoft for the Endpoint Configuration Manager.
CVE-2022-37972 affects Microsoft Endpoint Configuration Manager versions between 2103 and 2207.
If exploited, CVE-2022-37972 may allow an attacker to present themselves as a legitimate user within the system.
There are no known workarounds for CVE-2022-37972, so applying the appropriate updates is highly recommended.