PT-2023-4387 · Microsoft · Windows Mobile Device Management+1

Marcos Oviedo

·

Published

2023-08-08

·

Updated

2024-05-29

·

CVE-2023-38186

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows Mobile Device Management (affected versions not specified)
Description The issue is related to insecure privilege management in Windows Mobile Device Management, which can allow an attacker to elevate their privileges. This could potentially compromise sensitive data. The estimated number of affected devices and real-world incidents are not specified.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2023-04732
CVE-2023-38186

Affected Products

Windows
Windows Mobile Device Management