PT-2022-4075 · Microsoft · Windows Connected Devices Platform Service+1

Published

2022-07-12

·

Updated

2023-05-17

·

CVE-2022-30212

CVSS v3.1

4.7

Medium

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Windows Connected Devices Platform Service (CDPSvc) (affected versions not specified)
Description The issue is caused by synchronization errors when using a shared resource in the Connected Devices Platform Service (CDPSvc) of Windows operating systems. This can allow an attacker to gain unauthorized access to protected information. The vulnerability enables attackers to obtain sensitive information and affect the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Race Condition

Weakness Enumeration

Related Identifiers

BDU:2022-04909
CVE-2022-30212

Affected Products

Windows
Windows Connected Devices Platform Service