Skip to content
← LibraryTechnique entry
CVE-FOLLINAExecution

Follina (MS-MSDT, CVE-2022-30190)

URL handler in Office documents auto-launches msdt.exe with attacker-controlled command line — RCE without macros.

§ Where this technique fits

CVE-FOLLINA is catalogued under the Execution tactic of the offensive-security kill-chain. It appears in 0 approved dossiers in the registry, typically.