Lucene search

K
nvd[email protected]NVD:CVE-2023-29352
HistoryJun 14, 2023 - 12:15 a.m.

CVE-2023-29352

2023-06-1400:15:09
web.nvd.nist.gov
6
windows remote desktop
security feature bypass
vulnerability

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

AI Score

7.9

Confidence

High

EPSS

0.001

Percentile

47.9%

Windows Remote Desktop Security Feature Bypass Vulnerability

Affected configurations

Nvd
Node
microsoftremote_desktopRange<1.2.4337.0windows
OR
microsoftwindows_10_1809Range<10.0.17763.4499x64
OR
microsoftwindows_10_21h2Range<10.0.19045.3087x64
OR
microsoftwindows_10_22h2Range<10.0.19045.3087x64
OR
microsoftwindows_11_21h2Range<10.0.22000.2057arm64
OR
microsoftwindows_11_21h2Range<10.0.22000.2057x64
OR
microsoftwindows_11_22h2Range<10.0.22621.1848arm64
OR
microsoftwindows_11_22h2Range<10.0.22621.1848x64
OR
microsoftwindows_server_2019Match-
OR
microsoftwindows_server_2022Match-
VendorProductVersionCPE
microsoftremote_desktop*cpe:2.3:a:microsoft:remote_desktop:*:*:*:*:*:windows:*:*
microsoftwindows_10_1809*cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*
microsoftwindows_10_21h2*cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:x64:*
microsoftwindows_10_22h2*cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:x64:*
microsoftwindows_11_21h2*cpe:2.3:o:microsoft:windows_11_21h2:*:*:*:*:*:*:arm64:*
microsoftwindows_11_21h2*cpe:2.3:o:microsoft:windows_11_21h2:*:*:*:*:*:*:x64:*
microsoftwindows_11_22h2*cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:arm64:*
microsoftwindows_11_22h2*cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:x64:*
microsoftwindows_server_2019-cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:*
microsoftwindows_server_2022-cpe:2.3:o:microsoft:windows_server_2022:-:*:*:*:*:*:*:*

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

AI Score

7.9

Confidence

High

EPSS

0.001

Percentile

47.9%