VDB
BDU%3A2023-06637
BDU%3A2023-06637
PUBLISHED
CVSS 6.5 MEDIUM
Уязвимость текстового редактора WordPad операционной системы Windows, позволяющая нарушителю раскрыть защищаемую информацию
Risk Scores
CVSS 3.1
6.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:P/RL:O/RC:C
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| microsoft | windows_server_2008_R2 | 6.1.7601.0, 6.1.7601.0 |
| microsoft | windows_server_2016 | 10.0.14393.0, 10.0.14393.0 |
| Microsoft | Windows Server 2012 | 6.2.9200.0 |
| Microsoft | Windows Server 2008 R2 Service Pack 1 (Server Core installation) | 6.1.7601.0 |
| Microsoft | Windows Server 2008 Service Pack 2 | 6.0.6003.0 |
| Microsoft Corp | Windows Server 2008 Service Pack 2, Windows Server 2012, Windows Server 2012 R2, Windows Server 2008 R2 Service Pack 1, Windows 10, Windows 10 1607, Windows Server 2016, Windows Server 2008 Service Pack 2 (Server Core Installation), Windows Server 2012 R2 (Server Core installation), Windows Server 2016 (Server Core installation), Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows 10 1809, Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022, Windows Server 2022 (Server Core installation), Windows 10 21H2, Windows 11 22H2, Windows 10 22H2, Windows 11 21H2, Windows Server 2012 (Server Core installation) | |
| Microsoft | Windows Server 2012 R2 | 6.3.9600.0 |
| Microsoft | Windows Server 2016 (Server Core installation) | 10.0.14393.0 |
| microsoft | windows_10_22H2 | 10.0.19045.0 |
| Microsoft | Windows Server 2016 | 10.0.14393.0 |
| Microsoft | Windows 11 version 22H2 | 10.0.22621.0 |
| Microsoft | Windows Server 2008 Service Pack 2 | 6.0.6003.0 |
| microsoft | windows_server_2008_sp2 | 6.0.6003.0, 6.0.6003.0, 6.0.6003.0 |
| Microsoft | Windows Server 2019 (Server Core installation) | 10.0.17763.0 |
| Microsoft | Windows Server 2008 Service Pack 2 (Server Core installation) | 6.0.6003.0 |
| microsoft | windows_11_21H2 | 10.0.0 |
| Microsoft | Windows Server 2022 | 10.0.20348.0 |
| Microsoft | Windows Server 2019 | 10.0.17763.0 |
| Microsoft | Windows 10 Version 1607 | 10.0.14393.0 |
| microsoft | windows_server_2012_R2 | 6.3.9600.0, 6.3.9600.0 |
…and 16 more
Timeline
- Oct 10, 2023 PoC Published
- Oct 11, 2023 PoC Published
- Oct 12, 2023 PoC Published
- Oct 13, 2023 CVE Published
- Sep 24, 2024 CVE Updated
- Dec 24, 2024 PoC Published
- Feb 23, 2025 PoC Published
- Feb 2, 2026 PoC Published
- Apr 16, 2026 Security Advisory
References
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36563 url
- https://www.cybersecurity-help.cz/vdb/SB2023101036 url
- https://ru.secnews.gr/486403/microsoft-patch-tuesday-oktobriou-2023-diorthonei-104-bugs/ url
- https://www.dillonfrankesecurity.com/posts/cve-2023-36563-wordpad-analysis/ url
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2023-36563 url