Critical CVSS 8.1 EPSS 0.00983 2022-11 archive

Executive Summary

None

Overview

8.1
CVSS HIGH
Critical
MS Severity
Not Exploited
MS Exploit Status
Less Likely
MS Exploit Likelihood
Category Remote Code Execution
Released Nov 8 2022
Last Updated Nov 8 2022
Publicly Disclosed No
CISA KEV Not Listed
Known Exploits None Known
EPSS Score 0.00983 — 0.57705 percentile

CVSS Vector

ATTACK VECTOR
Network
ATTACK COMPLEXITY
High
PRIVILEGES REQUIRED
None
USER INTERACTION
None
SCOPE
Unchanged
Temporal Score: 7.1

EPSS Score

0.00983
probability of exploitation in the next 30 days
0.57705 percentile - updated 2026-06-20
View on FIRST.org

Affected Products

8 affected products
Product KB Article Severity Impact Restart Required
Windows 7 for 32-bit Systems Service Pack 1 5020000 (Monthly Rollup) 5020013 (Security Only) Critical Remote Code Execution Yes
Windows 7 for x64-based Systems Service Pack 1 5020000 (Monthly Rollup) 5020013 (Security Only) Critical Remote Code Execution Yes
Windows Server 2008 for 32-bit Systems Service Pack 2 5020019 (Monthly Rollup) 5020005 (Security Only) Critical Remote Code Execution Yes
Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation) 5020019 (Monthly Rollup) 5020005 (Security Only) Critical Remote Code Execution Yes
Windows Server 2008 for x64-based Systems Service Pack 2 5020019 (Monthly Rollup) 5020005 (Security Only) Critical Remote Code Execution Yes
Windows Server 2008 for x64-based Systems Service Pack 2 (Server Core installation) 5020019 (Monthly Rollup) 5020005 (Security Only) Critical Remote Code Execution Yes
Windows Server 2008 R2 for x64-based Systems Service Pack 1 5020000 (Monthly Rollup) 5020013 (Security Only) Critical Remote Code Execution Yes
Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation) 5020000 (Monthly Rollup) 5020013 (Security Only) Critical Remote Code Execution Yes

Patches

2 patches
Article Type Restart
5020000 (Monthly Rollup) 5020013 Monthly Rollup Yes
5020019 (Monthly Rollup) 5020005 Monthly Rollup Yes

Known Exploits

Acknowledgments

Microsoft's Windows Servicing and Delivery Group - Network Security and Containers (NSC) Team