First published: Tue Jan 10 2023(Updated: )
Windows Backup Service Elevation of Privilege Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 10 | ||
Microsoft Windows 10 | =20h2 | |
Microsoft Windows 10 | =21h2 | |
Microsoft Windows 10 | =22h2 | |
Microsoft Windows 10 | =1607 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows 11 | ||
Microsoft Windows 11 | ||
Microsoft Windows 11 | =21h2 | |
Microsoft Windows 11 | =21h2 | |
Microsoft Windows 11 | =22h2 | |
Microsoft Windows 11 | =22h2 | |
Microsoft Windows 7 | =sp1 | |
Microsoft Windows 10 | =20H2 | |
Microsoft Windows 10 | =20H2 | |
Microsoft Windows 11 | =21H2 | |
Microsoft Windows 10 | =1607 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows 10 | =21H2 | |
Microsoft Windows 10 | ||
Microsoft Windows 10 | =22H2 | |
Microsoft Windows 11 | =22H2 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows 7 | ||
Microsoft Windows 10 | =1809 | |
Microsoft Windows 11 | =22H2 | |
Microsoft Windows 10 | ||
Microsoft Windows 10 | =1607 | |
Microsoft Windows 10 | =22H2 | |
Microsoft Windows 7 | ||
Microsoft Windows 10 | =20H2 | |
Microsoft Windows 11 | =21H2 | |
Microsoft Windows 10 | =21H2 | |
Microsoft Windows 10 | =21H2 | |
Microsoft Windows 10 | =22H2 | |
=20h2 | ||
=21h2 | ||
=22h2 | ||
=1607 | ||
=1809 | ||
=21h2 | ||
=21h2 | ||
=22h2 | ||
=22h2 | ||
=sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-21752 is a vulnerability in the Windows Backup Service that allows an attacker to elevate their privileges.
Microsoft Windows 10 (all versions), Microsoft Windows 11 (all versions), and Microsoft Windows 7 with SP1 are affected by CVE-2023-21752.
CVE-2023-21752 has a severity rating of 7.1 (high).
To fix CVE-2023-21752, apply the patches provided by Microsoft or update to the latest version of the affected software.
You can find more information about CVE-2023-21752 on the Microsoft Security Response Center website.