Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Steve Walker

#13429of 53,638
19.8Total CVSS
Vulnerabilities · 2
Critical
2
PT-2023-5914
10
2023-10-10
Microsoft · Windows Iis Server · CVE-2023-36434
**Name of the Vulnerable Software and Affected Versions** Windows IIS Server (affected versions not specified) **Description** The issue is related to insufficient access controls in the Windows IIS Server, which can be exploited by a remote attacker to elevate their privileges. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2023-4297
9.8
2023-08-08
Microsoft · Exchange Server · CVE-2023-21709
**Name of the Vulnerable Software and Affected Versions** Microsoft Exchange Server (affected versions not specified) **Description** The issue is related to an elevation of privilege vulnerability in Microsoft Exchange Server, which can be exploited by a remote attacker to elevate their privileges. This vulnerability is associated with insufficient access controls. There have been reports of this issue being actively exploited. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.