PT-2023-2432 · Microsoft+1 · Visual Studio Code+2

Published

2023-04-11

·

Updated

2024-05-29

·

CVE-2023-24893

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Microsoft Visual Studio (affected versions not specified) Microsoft Visual Studio Code (affected versions not specified)
Description The issue is related to insufficient input validation in Microsoft Visual Studio, which can allow an attacker to execute arbitrary code. This can be exploited to gain unauthorized access and control.
Recommendations For Microsoft Visual Studio, at the moment, there is no information about a newer version that contains a fix for this vulnerability. For Microsoft Visual Studio Code, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2023-02217
CVE-2023-24893

Affected Products

Visual Studio
Visual Studio Code
Red Os