References https://nvd.nist.gov/vuln/detail/CVE-2022-34713 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34713 https://www.cve.org/CVERecord?id=CVE-2022-34713 https://www.sentinelone.com/vulnerability-database/cve-2022-34713/ https://success.trendmicro.com/en-US/solution/KA-0013245 https://www.rapid7.com/db/vulnerabilities/msft-cve-2022-34713/ https://github.com/advisories/GHSA-86f2-7h4r-pc7m https://www.vicarius.io/vsociety/posts/cve-2022-34713-mitigation-script-dogwalk-path-traversal-vulnerability-in-the-windows-support-diagnostic-tool https://www.beyondtrust.com/blog/entry/how-to-mitigate-the-windows-dogwalk-vulnerability https://www.deepwatch.com/labs/customer-advisory-microsofts-support-diagnostic-tool-vulnerability-aka-dogwalk-actively-exploited/ https://www.csa.gov.sg/alerts-and-advisories/alerts/al-2022-037/ https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-34713
Related VulnerabilitiesPoCCVE-2026-58644: Microsoft SharePoint Server - WS-Federation BinaryFormatter Deserialization RCEMicrosoft SharePoint /_layouts/15/ToolPane.aspx 代码执行漏洞(CVE-2025-53770)Microsoft SharePoint Server /_trust/default.aspx 代码执行漏洞(CVE-2026-50522)Microsoft SharePoint Server JWT 权限绕过漏洞(CVE-2026-55040)Windows截图工具NTLM信息泄露漏洞(CVE-2026-33829)Gradio /static//windows/win.ini 文件读取漏洞 (CVE-2026-28414)Windows Shell Link 敏感信息泄露与欺骗漏洞(CVE-2026-25185)PoCCVE-2021-28480: Microsoft Exchange - Pre-Auth SSRF / ACL Bypass (ProxyNotFound)PoCCVE-2021-28481: Microsoft Exchange - Pre-Auth SSRF / ACL Bypass (ProxyNotFound)PoCsharepoint-lists-api-disclosure: Microsoft SharePoint - List API DisclosurePoCCVE-2025-13315: Twonky Server 8.5.2 on Linux and Windows - Log File ExposurePoCsharepoint-layouts-disclosure: Microsoft SharePoint - Layouts DisclosurePoCsharepoint-masterpage-disclosure: Microsoft SharePoint - Master Page Disclosure