VDB

BDU%3A2024-00223

BDU%3A2024-00223 PUBLISHED CVSS 6.599999904632568 MEDIUM

Уязвимость реализации протокола Online Certificate Status Protocol (OCSP) операционных систем Windows, позволяющая нарушителю выполнить произвольный код

Risk Scores

CVSS 3.1
6.599999904632568
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C

Affected Products

VendorProductVersions
microsoftwindows_server_201910.0.17763.0, 10.0.17763.0
MicrosoftWindows Server 2016 (Server Core installation)10.0.14393.0
MicrosoftWindows Server 201910.0.17763.0
MicrosoftWindows Server 2008 R2 Service Pack 16.1.7601.0
Microsoft CorpWindows Server 2008 Service Pack 2, Windows Server 2012, Windows Server 2012 R2, Windows Server 2008 R2 Service Pack 1, Windows Server 2016, Windows Server 2008 Service Pack 2 (Server Core Installation), Windows Server 2012 R2 (Server Core installation), Windows Server 2016 (Server Core installation), Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022, Windows Server 2022 (Server Core installation), Windows Server 2012 (Server Core installation), Windows Server 2022, 23H2 Edition (Server Core installation)
microsoftwindows_server_202210.0.20348.0
microsoftwindows_server_2008_sp26.0.6003.0, 6.0.6003.0, 6.0.6003.0
MicrosoftWindows Server 20126.2.9200.0
MicrosoftWindows Server 2008 Service Pack 2 (Server Core installation)6.0.6003.0
MicrosoftWindows Server 2022, 23H2 Edition (Server Core installation)10.0.25398.0
MicrosoftWindows Server 2008 Service Pack 26.0.6003.0
MicrosoftWindows Server 2019 (Server Core installation)10.0.17763.0
MicrosoftWindows Server 202210.0.20348.0
microsoftwindows_server_20126.2.9200.0, 6.2.9200.0
microsoftwindows_server_2012_R26.3.9600.0, 6.3.9600.0
MicrosoftWindows Server 201610.0.14393.0
MicrosoftWindows Server 2012 R2 (Server Core installation)6.3.9600.0
microsoftwindows_server_23h210.0.25398.0
MicrosoftWindows Server 2012 R26.3.9600.0
MicrosoftWindows Server 2012 (Server Core installation)6.2.9200.0

…and 4 more

Timeline

  • Jan 9, 2024 CVE Published
  • Jan 9, 2024 PoC Published
  • Jan 9, 2024 PoC Published
  • Jan 12, 2024 CVE Updated
  • May 3, 2025 PoC Published
  • Mar 19, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›