Microsoft has fixed a new Windows RPC CVE-2022-26809 vulnerability that is raising concerns among security researchers due to its potential for widespread, significant cyberattacks once an exploit is developed. Therefore, all organization needs to apply Windows security updates as soon as possible.
Microsoft fixed this vulnerability as part of the April 2022 Patch Tuesday updates and rated it as 'Critical,' as it allows unauthorized remote code execution through a bug in the Microsoft Remote Procedure Call (RPC) communication protocol.
If exploited, any commands will be executed at the same privilege level as the RPC server, which in many cases has elevated or SYSTEM level permissions, providing full administrative access to the exploited device.
The Microsoft Remote Procedure Call (RPC) protocol is a communication protocol that allows processes to communicate with each other, even if those programs are running on another device.
RPC allows processes on different devices to communicate with each other, with the RPC hosts listening for remote connections over TCP ports, most commonly ports 445 and 135.
Source
https://www.bleepingcomputer.com/news/microsoft/critical-windows-rpc-cve-2022-26809-flaw-raises-concerns-patch-now/
Links discussed during the video
https://www.cisa.gov/uscert/ncas/current-activity/2022/04/13/microsoft-releases-advisory-address-critical-remote-code-execution
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2022-26809
https://docs.microsoft.com/en-us/windows-server/storage/file-server/smb-secure-traffic
https://support.microsoft.com/en-us/topic/april-12-2022-kb5012647-os-build-17763-2803-9a10c5c9-e65f-4ae1-a9c4-2db9a8eca4fc
Please act quickly and do update your system.
Contact us
Telegram
https://t.me/techvortex
Facebook Group
https://www.facebook.com/groups/1012323126181044
Facebook Page
https://www.facebook.com/techvortex.official
This video is a result of hard work, dedicated time and preparation and years of experience, Please like, Subscribe and Share and tell us your comment