Lucene search

K
nvd[email protected]NVD:CVE-2023-24903
HistoryMay 09, 2023 - 6:15 p.m.

CVE-2023-24903

2023-05-0918:15:12
CWE-362
CWE-415
web.nvd.nist.gov
1
windows sstp vulnerability
remote code execution

8.1 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

9.1 High

AI Score

Confidence

High

0.011 Low

EPSS

Percentile

84.3%

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability

Affected configurations

NVD
Node
microsoftwindows_10_1507Range<10.0.10240.19926
OR
microsoftwindows_10_1607Range<10.0.14393.5921
OR
microsoftwindows_10_1809Range<10.0.17763.4377
OR
microsoftwindows_10_20h2Range<10.0.19042.2965
OR
microsoftwindows_10_21h2Range<10.0.19044.2965
OR
microsoftwindows_10_22h2Range<10.0.19045.2965
OR
microsoftwindows_11_22h2Range<10.0.22000.1702
OR
microsoftwindows_server_2008Match-sp2
OR
microsoftwindows_server_2008Matchr2sp1x64
OR
microsoftwindows_server_2012Match-
OR
microsoftwindows_server_2012Matchr2
OR
microsoftwindows_server_2016Match-
OR
microsoftwindows_server_2019Match-
OR
microsoftwindows_server_2022Match-

8.1 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

9.1 High

AI Score

Confidence

High

0.011 Low

EPSS

Percentile

84.3%