CVE-2023-36803

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Sep 12, 2023
Updated: Jan 1, 2025
CWE ID 125
CWE ID 126

Summary

CVE-2023-36803 is a newly disclosed Windows Kernel information disclosure vulnerability. An attacker who successfully exploits this weakness can gain unauthorized access to sensitive system information. This issue can potentially allow an attacker to map out the memory layout of a targeted system, which can be used for further exploitation. The vulnerability affects certain versions of Microsoft Windows, and the company has released patches to address it. Users are strongly advised to install the updates promptly to mitigate the risk of attack.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share