MS.Windows.MSDT.Diagcab.Directory.Traversal

description-logoDescription

This indicates an attack attempt to exploit a Directory Traversal Vulnerability in Microsoft Support Diagnostic Tool (MSDT).
The vulnerability is due to an error when the vulnerable software handles an MSDT file. A remote attacker may be able to exploit this to execute arbitrary code within the context of the current user.

affected-products-logoAffected Products

Windows 11 v21H2
Windows 10 (v1803 to v21H2)
Windows 7
Windows Server 2008 R2
Windows Server 2012
Windows Server 2012 R2
Windows Server 2016
Windows Server 2019
Windows Server 2022

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Currently we are unaware of any vendor supplied patch or updates available for this issue.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2022-06-27 21.345 Default_action:pass:drop
2022-06-16 21.340