First published: Tue Oct 11 2022(Updated: )
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-22035, CVE-2022-24504, CVE-2022-30198, CVE-2022-33634, CVE-2022-38000, CVE-2022-41081.
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows Server 2008 R2 | ||
Microsoft Windows 10 | =1607 | |
Microsoft Windows 8.1 for 32-bit systems | ||
Microsoft Windows Server 2016 | ||
Microsoft Windows 10 | =20H2 | |
Microsoft Windows 10 | =21H1 | |
Microsoft Windows Server 2022 | ||
Microsoft Windows 10 | =1607 | |
Microsoft Windows 7 | ||
Microsoft Windows Server 2016 | ||
Microsoft Windows 10 | =20H2 | |
Microsoft Windows 11 | =21H2 | |
Microsoft Windows 10 | =21H1 | |
Microsoft Windows 8.1 for x64-based systems | ||
Microsoft Windows 11 | =22H2 | |
Microsoft Windows Server 2012 R2 | ||
Microsoft Windows 10 | =21H2 | |
Microsoft Windows 11 | =21H2 | |
Microsoft Windows Server 2012 R2 | ||
Microsoft Windows 10 | ||
Microsoft Windows Server 2008 R2 | ||
Microsoft Windows Server 2022 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows 10 | =1809 | |
Microsoft Windows 10 | =21H2 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows 10 | =21H1 | |
Microsoft Windows 10 | ||
Microsoft Windows 11 | =22H2 | |
Microsoft Windows 10 | =21H2 | |
Microsoft Windows 7 | ||
Microsoft Windows 10 | =1809 | |
Microsoft Windows Server 2012 x64 | ||
Microsoft Windows Server 2012 x64 | ||
Microsoft Windows RT | ||
Microsoft Windows Server 2008 Itanium | ||
Microsoft Windows Server 2008 Itanium | ||
Microsoft Windows 10 | ||
Microsoft Windows 10 | =20h2 | |
Microsoft Windows 10 | =21h1 | |
Microsoft Windows 10 | =21h2 | |
Microsoft Windows 10 | =1607 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows 11 | ||
Microsoft Windows 11 | ||
Microsoft Windows 11 | =22h2 | |
Microsoft Windows 11 | =22h2 | |
Microsoft Windows 7 | =sp1 | |
Microsoft Windows 8.1 | ||
Microsoft Windows RT | ||
Microsoft Windows Server 2008 Itanium | =sp2 | |
Microsoft Windows Server 2008 Itanium | =r2-sp1 | |
Microsoft Windows Server 2012 x64 | ||
Microsoft Windows Server 2012 x64 | =r2 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2022 | ||
Microsoft Windows Server 2008 Itanium | ||
Microsoft Windows Server 2008 Itanium |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-38047 is classified as a critical severity vulnerability due to its potential to allow remote code execution on affected systems.
To fix CVE-2022-38047, apply the latest security updates and patches provided by Microsoft for the affected Windows products.
CVE-2022-38047 affects various versions of Windows including Windows 7, Windows 10, Windows 11, and several versions of Windows Server.
CVE-2022-38047 is a remote code execution vulnerability in the Windows Point-to-Point Tunneling Protocol.
Attackers can exploit CVE-2022-38047 remotely by sending specially crafted requests to a vulnerable server, allowing them to execute arbitrary code.