Lucene search

K
mscveMicrosoftMS:CVE-2023-35342
HistoryJul 11, 2023 - 7:00 a.m.

Windows Image Acquisition Elevation of Privilege Vulnerability

2023-07-1107:00:00
Microsoft
msrc.microsoft.com
13
windows
image acquisition
elevation
privilege
vulnerability
microsoft

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

21.9%

Affected configurations

Vulners
Node
microsoftwindows_server_2012Range<6.3.9600.21063r2
OR
microsoftwindows_server_2012Range<6.3.9600.21075r2
OR
microsoftwindows_server_2012Range<6.3.9600.21063r2
OR
microsoftwindows_server_2012Range<6.3.9600.21075r2
OR
microsoftwindows_server\,_1803_\(server_core_installation\)Range<6.2.9200.24374
OR
microsoftwindows_server\,_1803_\(server_core_installation\)Range<6.2.9200.24374
OR
microsoftwindows_server_2012Range<6.2.9200.24374
OR
microsoftwindows_server_2012Range<6.2.9200.24374
OR
microsoftwindows_server_2008Range<6.1.7601.26623r2x64
OR
microsoftwindows_server_2008Range<6.1.7601.26623r2x64
OR
microsoftwindows_server_2008Range<6.1.7601.26623r2x64
OR
microsoftwindows_server_2008Range<6.1.7601.26623r2x64
OR
microsoftwindows_server\,_1803_\(server_core_installation\)Range<10.0.14393.6085
OR
microsoftwindows_server_2016Range<10.0.14393.6085
OR
microsoftwindows_defender_on_windows_10_1607_for_x64-based_systemsRange<10.0.14393.6085
OR
microsoftwindows_defender_on_windows_10_1607_for_32-bit_systemsRange<10.0.14393.6085
OR
microsoftwindows_10_1903_for_x64-based_systemsRange<10.0.10240.20048
OR
microsoftwindows_10_2004_for_32-bit_systemsRange<10.0.10240.20048
OR
microsoftwindows_10_2004_for_32-bit_systemsRange<10.0.19045.3208
OR
microsoftwindows_10_22h2Range<10.0.19045.3208arm64
OR
microsoftwindows_10_1903_for_x64-based_systemsRange<10.0.19045.3208
OR
microsoftwindows_11_22h2Range<10.0.22621.1992x64
OR
microsoftwindows_11_22h2Range<10.0.22621.1992arm64
OR
microsoftwindows_10_1903_for_x64-based_systemsRange<10.0.19044.3208
OR
microsoftwindows_10_21h2Range<10.0.19044.3208arm64
OR
microsoftwindows_10_2004_for_32-bit_systemsRange<10.0.19044.3208
OR
microsoftwindows_11_21h2Range<10.0.22000.2176arm64
OR
microsoftwindows_11_21h2Range<10.0.22000.2176x64
OR
microsoftwindows_server\,_1803_\(server_core_installation\)Range<10.0.20348.1850
OR
microsoftwindows_server_2022Range<10.0.20348.1850
OR
microsoftwindows_server\,_1803_\(server_core_installation\)Range<10.0.17763.4645
OR
microsoftwindows_server_2019Range<10.0.17763.4645
OR
microsoftwindows_10_1809_for_arm64-based_systemsRange<10.0.17763.4645
OR
microsoftwindows_10_1809_for_x64-based_systemsRange<10.0.17763.4645
OR
microsoftwindows_10_1809_for_32-bit_systemsRange<10.0.17763.4645

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

21.9%