CVE-2022-44698: Microsoft Defender SmartScreen Security Feature Bypass
Microsoft Defender SmartScreen Security Feature Bypass Vulnerability. Microsoft Defender SmartScreen contains a security feature bypass vulnerability that could allow an attacker to evade Mark of the Web (MOTW) defenses via a specially crafted malicious file.
- CISA KEV-listed (remediation due 2023-01-03)
- used in ransomware campaigns
- EPSS 67.2% (98.6% percentile)