PT-2023-6969 · Microsoft · Windows

Published

2023-11-14

·

Updated

2024-07-11

·

CVE-2023-36396

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows (affected versions not specified)
Description The issue is related to insufficient input validation when processing compressed folders, allowing an attacker to execute arbitrary code. This can be exploited by remote attackers to affect the system. The vulnerability is actively being exploited.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2023-07988
CVE-2023-36396

Affected Products

Windows