QID 91948

Date Published: 2022-10-18

QID 91948: Microsoft Windows Defender Elevation of Privilege Vulnerability for October 2022

Microsoft Defender is prone to Elevation of Privilege Vulnerability.

Affected Software:
Windows Defender

Affected Version:
Windows Defender prior to 1.1.19700.2.
QID Detection Logic (Authenticated):
The authenticated check looks for a vulnerable version of file C:\WINDOWS\System32\mpengine.dll

An attacker who successfully exploited this vulnerability could gain specific limited SYSTEM privileges.

  • CVSS V3 rated as High - 7.1 severity.
  • CVSS V2 rated as Medium - 3.6 severity.
  • Solution
    Users are advised to check CVE-2022-37971 for more information.

    CVEs related to QID 91948

    Software Advisories
    Advisory ID Software Component Link
    CVE-2022-37971 URL Logo msrc.microsoft.com/update-guide/vulnerability/CVE-2022-37971