Microsoft Alert
7672Warning Date
Severity Level
Warning Number
Target Sector
15 December, 2022
● High
2022-5399
All
Microsoft has released security updates to address a vulnerability in the following products:
- Windows Server 2022
- Windows Server 2019
- Windows Server 2016
- Windows Server 2012
- Windows Server 2008
- Windows 11
- Windows 10
- Windows 8.1
- Windows 7
The vulnerability allows an unauthenticated attacker to execute arbitrary commands remotely by accessing NEGOEX protocol via any Windows application protocol that requires authentication, such as (SMB) and (RDP).
The CERT team encourages users to review Microsoft security advisory and apply the necessary updates: