A vulnerability related to Microsoft File Server Shadow Copy Agent Service (RVSS) has just published.
In case of successful exploitation of this vulnerability causes an attacker could affect the integrity of the shadow copy because they could create or delete a shadow copy file of SMB shares.
Affected Systems
IoC’s
-
Recommended Solution(s)
The one who have the File Server VSS Agent Service running on their Windows Servers must install the June 14, 2022 or later Windows updates on both the Application Server and the File Server, to become protected and functional. Failure to install the updates on both machine roles could cause backup operations carried out by applications that previously worked to fail.
It is recommended to check up on the content in the links below:
https://support.microsoft.com/help/5015527CVE / CWE
CVE-2022-30154
Related Website(s)
* Vulnerabilities with a CVSS 3.1 score between 7.0 and 8.9 are evaluated to be “high” whereas vulnerabilities with a CVSS 3.1 score between 9.0 and 10.0 are evaluated to be “critical”.
+90 216 504 53 32
Aydınevler Mahallesi,İsmet İnönü Cadddesi,Küçükyalı Ofis Park A Blok,No:20/1 Maltepe İstanbul
+90 312 235 44 51
You can register to our newsletter on the home page to be instantly informed about security vulnerabilities.