CVE-2023-35377
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Aug 8, 2023
Updated: Jan 1, 2025
CWE ID 20
Summary
CVE-2023-35377 is a newly disclosed vulnerability affecting Microsoft Message Queuing (MSMQ) services. This issue permits an attacker to cause a denial of service condition by sending maliciously crafted messages to an MSMQ queue. Successful exploitation results in the MSMQ service crashing, rendering the system unresponsive until it is restarted. Attackers can leverage this vulnerability to disrupt services and cause downtime for critical systems. Microsoft urges organizations using MSMQ to apply the available patch as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.