PT-2023-6153 · Microsoft · Windows

Kap0K

+1

·

Published

2023-10-10

·

Updated

2024-05-29

·

CVE-2023-36704

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows (affected versions not specified)
Description The vulnerability is related to insufficient input validation in the Windows Setup Files Cleanup component. It allows remote attackers to execute arbitrary code on the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Use of Uninitialized Resource

Weakness Enumeration

Related Identifiers

BDU:2023-06860
CVE-2023-36704

Affected Products

Windows