PT-2023-1774 · Microsoft · Windows

Ben Barnea

·

Published

2023-03-14

·

Updated

2024-05-29

·

CVE-2023-24908

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows (affected versions not specified)
Description The issue exists due to insufficient input validation in the Remote Procedure Call Runtime. It allows remote attackers to execute arbitrary code and affect the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Integer Overflow

Weakness Enumeration

Related Identifiers

BDU:2023-01369
CVE-2023-24908

Affected Products

Windows