Vulnerability Details CVE-2022-41156
Remote code execution vulnerability due to insufficient verification of URLs, etc. in OndiskPlayerAgent. A remote attacker could exploit the vulnerability to cause remote code execution by causing an arbitrary user to download and execute malicious code.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 52.1%
CVSS Severity
CVSS v3 Score 7.8
Products affected by CVE-2022-41156
-
cpe:2.3:a:etm-s:ondiskplayeragent:1.3.8.12
-
cpe:2.3:o:microsoft:windows:-