PT-2023-2560 · Microsoft · Windows Network Load Balancing+1

B2Ahex

+1

·

Published

2023-04-11

·

Updated

2024-05-29

·

CVE-2023-28240

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows Network Load Balancing (affected versions not specified)
Description The issue is related to insufficient input validation in the Windows Network Load Balancing (NLB) component, allowing remote attackers to execute arbitrary code by sending a specially crafted malicious packet. This can affect the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2023-02375
CVE-2023-28240

Affected Products

Windows
Windows Network Load Balancing