CVE-2023-32050
CVSS 3.1 Score 7.0 of 10 (high)
Details
Published Jul 11, 2023
Updated: May 29, 2024
CWE ID 59
Summary
CVE-2023-32050 is a newly discovered vulnerability affecting Windows Installer. This EoP (Elevation of Privilege) issue allows an attacker to gain higher system privileges by manipulating specially crafted MSI (Microsoft Installer) packages. Successful exploitation could lead to the installation of unauthorized software, data theft, or system compromise. Microsoft strongly advises installing the available patch as soon as possible to mitigate this risk. Users should exercise caution when installing software from untrusted sources to prevent potential attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Microsoft Windows Server 2008
Affected Vendors
- Microsoft