QID 376721
QID 376721: Microsoft Defender for Endpoint Tampering Vulnerability for July 2022
Microsoft Defender for Endpoint is an enterprise endpoint security platform designed to help enterprise networks prevent, detect, investigate, and respond to advanced threats.
Affected Products:
Microsoft Defender for Endpoint for Linux
QID Detection Logic(Authenticated):
This QID checks for the vulnerable versions of Microsoft Defender for Endpoint for Linux.
Microsoft Defender for Endpoint for Linux is prone to Tampering Vulnerability. Successful exploitation of this vulnerability requires an attacker to authenticate to the management console appliance and to have an integration token.
Solution
Customers are advised to refer to CVE-2022-33637 for more information pertaining to this vulnerability.
Vendor References
- CVE-2022-33637 -
msrc.microsoft.com/update-guide/vulnerability/CVE-2022-33637
CVEs related to QID 376721
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2022-33637 |
|