CVE-2023-38172
CVSS 3.1 Score 7.5 of 10 (high)
Details
Summary
CVE-2023-38172 is a newly disclosed vulnerability affecting Microsoft Message Queuing (MSMQ). This Denial of Service (DoS) issue allows an attacker to send maliciously crafted messages to an MSMQ server, causing it to consume excessive system resources and become unresponsive. The vulnerability can lead to denial of service conditions and potential application downtime. Microsoft has released a security update to address this issue, and it is recommended that affected systems be updated as soon as possible to mitigate the risk. Organizations should also monitor their MSMQ servers for any unusual activity and implement network security controls to prevent unauthorized access.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows Server 2008
- Microsoft Windows Server 2012
- Microsoft Windows Server 2016
- Windows Server 2022
- Microsoft Windows Server 2019
Affected Vendors
- Microsoft