PT-2023-1645 · Microsoft · Defender For Iot

Yiming Xiang

·

Published

2023-02-14

·

Updated

2024-05-29

·

CVE-2023-23379

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Microsoft Defender for IoT (affected versions not specified)
Description The issue is related to insufficient access control in Microsoft Defender for IoT, which could allow an attacker to elevate their privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Relative Path Traversal

Weakness Enumeration

Related Identifiers

BDU:2023-01181
CVE-2023-23379

Affected Products

Defender For Iot