VDB

CVE-2023-28252

CVE-2023-28252 PUBLISHED KEV

In verschiedenen Versionen von Microsoft Windows und Microsoft Windows Server existieren mehrere nicht näher beschriebene Schwachstellen. Ein Angreifer kann dies ausnutzen, um Informationen offenzulegen, einen Denial of Service Zustand herbeizuführen, Sicherheitsmechanismen zu umgehen, seine Privilegien zu erweitern und um beliebigen Code auszuführen.

EPSS 59.97% · 98.3th percentile

Risk Scores

EPSS Score
59.97%
98.3th percentile

Affected Products

VendorProductVersions
MicrosoftMicrosoft Windows Server 2012
MicrosoftMicrosoft Windows 10 Version 22H2
MicrosoftMicrosoft Windows Server 2016
MicrosoftMicrosoft Windows Server 2022
MicrosoftMicrosoft Windows 10 Version 1809
MicrosoftMicrosoft Windows 11 version 21H2
MicrosoftMicrosoft Windows Server 2008 SP2
MicrosoftMicrosoft Windows 10 Version 21H2
HitachiHitachi Storage Virtual Storage Platform
MicrosoftMicrosoft Windows Server 2019
MicrosoftMicrosoft Windows Server 2008 R2 SP1
MicrosoftMicrosoft Windows Server 2012 R2
MicrosoftMicrosoft Windows Remote Desktop client for Desktop
MicrosoftMicrosoft Windows 10 Version 1607
MicrosoftMicrosoft Windows 11 Version 22H2
MicrosoftMicrosoft Windows 10 Version 20H2
MicrosoftMicrosoft Windows 10

Timeline

  • Apr 11, 2023 CISA KEV Added
  • Apr 11, 2023 Metasploit Module
  • Apr 11, 2023 PoC Published
  • Apr 11, 2023 CVE Published
  • Apr 12, 2023 EPSS Score
  • Jun 16, 2023 EPSS Score
  • Sep 14, 2023 PoC Published
  • Sep 15, 2023 EPSS Score
  • Jun 28, 2024 EPSS Score
  • Nov 17, 2024 PoC Published
  • Feb 13, 2025 PoC Published
  • Mar 17, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›