PT-2022-24508 · Microsoft · Windows

Published

2022-12-17

·

Updated

2022-12-23

·

CVE-2022-38659

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows (affected versions not specified)
Description The issue concerns the encryption of operator credentials on Windows systems. In specific scenarios, the credentials may be encrypted in a manner that is not completely machine-dependent.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Inadequate Encryption Strength

Weakness Enumeration

Related Identifiers

CVE-2022-38659

Affected Products

Windows