CVE Tools

CVE-2022-30190

Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability

Published: Jun 1, 2022Updated: Oct 30, 2025 Sources: CVE List NVD BDUNVD-CWE-noinfo

Description

A remote code execution vulnerability exists when MSDT is called using the URL protocol from a calling application such as Word. An attacker who successfully exploits this vulnerability can run arbitrary code with the privileges of the calling application. The attacker can then install programs, view, change, or delete data, or create new accounts in the context allowed by the user’s rights. Please see the MSRC Blog Entry for important information about steps you can take to protect your system from this vulnerability.

In plain language

AI Act now

CVE-2022-30190 is a Microsoft Windows bug that can let attackers run harmful code through the Microsoft Support Diagnostic Tool, and a typical small business on affected Windows versions should act immediately (RED).

What to do

  1. Update all affected Windows devices to the latest available security updates as soon as possible. 2) Ask your IT person to disable or block the MSDT URL handling behavior (per Microsoft guidance) so the attack path can’t be triggered. 3) Make sure users don’t open unexpected email attachments or office documents until patches/mitigations are in place.

CVSS Vector Breakdown

AV:LAC:LPR:NUI:RS:UC:HI:HA:H
Exploitability
AV:LAttack Vector
Local
AC:LAttack Complexity
Low
PR:NPrivileges Required
None
UI:RUser Interaction
Required
Scope
S:UScope
Unchanged
Impact
C:HConfidentiality
High
I:HIntegrity
High
A:HAvailability
High

Weaknesses

Affected Products

and 58 more affected products View all →

Exploitability

CISA Known Exploited Vulnerability
Added to KEV:Jun 14, 2022
Remediation due:Jul 5, 2022
Ransomware:Known ransomware use

Required action: Apply updates per vendor instructions.

1 exploit source identified

Exploit details including PoC links, Metasploit modules, and scanner templates are available after registration.

View exploit details
Official Patch Available

References

and 5 more references View all →
1

Unlock Complete Vulnerability Intelligence

Get the full picture for CVE-2022-30190 and every CVE in our database. Create a free account — no credit card required.

Create Free Account
Plain-language analysis
Impact assessment and exploitation scenario in plain English
Attack graph visualization
Interactive attack path and kill chain mapping
Exploit details & PoC links
ExploitDB, Metasploit, GitHub PoCs with direct links
Nuclei scanner templates
Ready-to-use vulnerability scanner templates
Full remediation guide
Patch instructions, workarounds, and compliance impact
Interactive AI chat
Ask questions about this vulnerability in natural language
Related vulnerabilities
Semantically similar CVEs and attack patterns
REST API & MCP access
Integrate vulnerability data into your workflows