当前位置:网站首页>Microsoft Office Word 远程命令执行漏洞(CVE-2022-30190)分析与利用
Microsoft Office Word 远程命令执行漏洞(CVE-2022-30190)分析与利用
2022-06-25 06:41:00 【千里ZLP】
一、漏洞简介
CVE-2022-30190漏洞在2022年5月27日,由nao_sec发现了一个从白俄罗斯IP上传到VirusTotal的恶意Word文档。该文档使用 Microsoft Word 远程模板功能链接恶意 HTML 文件,Winword.exe 程序处理该恶意 HTML 文件中的 js 代码时发现其中使用”ms-msdt”协议的 URL, 随即启动 msdt.exe 程序(Microsoft Support Diagnostics Tool)处理该 URL,导致内嵌在 URL 中的 powershell 命令得到执行。
2022年5月30日,微软公布该漏洞编号 CVE-2022-30190。
漏洞状态
漏洞细节 | 漏洞POC | 漏洞EXP | 在野利用 |
边栏推荐
- [Batch dos - cmd Command - Summary and Summary] - cmd extension Command, extension Function (CMD / E: on, CMD / E: off)
- GUI pull-down menu of unity3d evil door implementation dropdown design has no duplicate items
- STL教程4-输入输出流和对象序列化
- 国外LEAD域名邮箱获取途径
- Modular programming of oled12864 display controlled by single chip microcomputer
- Chuantu microelectronics ca-if1051 can-fd transceiver
- Manufacturing process of PCB 2021-10-11
- CPDA|数据分析师成长之路如何起步?
- Ns32f103c8t6 can perfectly replace stm32f103c8t6
- (tool class) quickly add time to code in source insight
猜你喜欢
点云智绘在智慧工地中的应用
Path planner based on time potential function in dynamic environment
How to use printf of 51 single chip microcomputer
el-input实现尾部加字
OpenCV每日函数 结构分析和形状描述符(8) fitLine函数 拟合直线
基于地面点稀少的LiDAR点云的茂密森林蓄积量估算
图扑软件数字孪生 3D 风电场,智慧风电之海上风电
Ca-is1200u current detection isolation amplifier has been delivered in batch
Application scheme | application of Sichuan earth microelectronics ca-is398x in PLC field
Different paths ii[dynamic planning improvement for DFS]
随机推荐
Modular programming of oled12864 display controlled by single chip microcomputer
函数模板_类模板
[batch dos-cmd command - summary and summary] - application startup and call, service and process operation commands (start, call, and)
【QT】Qt 5 的程序:打印文档
Bicubic difference
AttributeError: ‘Upsample‘ object has no attribute ‘recompute_ scale_ factor‘
【蒸馏】PointDistiller: Structured Knowledge DistillationTowards Efficient and Compact 3D Detection
GUI pull-down menu of unity3d evil door implementation dropdown design has no duplicate items
Fairmot yolov5s to onnx
lebel只想前面有星号,但是不想校验
Distributed quorum NWR of the alchemy furnace of the Supreme Master
smartBugs安装小问题总结
Runtime - Methods member variable, cache member variable
(tool class) quickly add time to code in source insight
Pytorch遇到的坑:为什么模型训练时,L1loss损失无法下降?
國外LEAD域名郵箱獲取途徑
PI Ziheng embedded: This paper introduces the multi-channel link mode of i.mxrt timer pit and its application in coremark Test Engineering
数据可视化没有重点怎么办?
机器学习笔记 - 时间序列的线性回归
“空间转换”显著提升陡崖点云的地面点提取质量