CVE-2022-37958 The new EternalBlue, What you need to know!
- LovikSecurity
- Dec 21, 2022
- 1 min read

Vulnerability Description:
A previously discovered Microsoft system issue was raised to a Critical vulnerability on December 13th when it was discovered that the issue could be exploited to achieve Remote Code Execution on Windows systems.
TLDR: Patch all your Windows systems ASAP starting with those that are internet facing.
Key details:
Exploits are available See Tweet from user Chompie1337 with POC HERE
Vulnerability is Wormable
Wide spread exploitation is expected
Vulnerable services makes for a large attack surface
Internet facing systems are the first targets Shodan Search

Vulnerable services:
Common Internet File System - CIFS
Server Message Block - SMB
Web Services like IIS - HTTP
Remote Desktop Protocol - RDP
Remote Procedure Call Extensions - RPC
Simple Message Transfer Protocol - SMTP
Lightweight Directory Access Protocol - LDAP
Remediation/Fix:
Update Windows based systems with the September 2022 patch or any subsequent superseded patch see patch details HERE. Links/References:
Comments