CVE-2023-21776
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Summary
CVE-2023-21776 is a recently disclosed Windows Kernel vulnerability. Maliciously crafted input can cause the operating system to disclose sensitive information, leading to potential security compromises. Attackers could exploit this issue to gain insight into the system's memory layout and configuration, paving the way for more advanced attacks. The vulnerability has been classified as an information disclosure issue and affects various Windows versions, necessitating immediate patches. Users are strongly advised to install the latest security updates to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows Server 2008
- Microsoft Windows 7
- Microsoft Windows 10
- Microsoft Windows 8.1
- Microsoft Windows Server 2012
Affected Vendors
- Microsoft