CVE-2023-23392: HTTP Protocol Stack Remote Code Execution Vulnerability
Published Mar 14, 2023
·Updated
HTTP Protocol Stack Remote Code Execution Vulnerability
Affected Software
9 affected componentsFixes available
Microsoft Windows 11=22H2
Microsoft Windows 11=22H2
Microsoft Windows 11=21H2
Microsoft Windows 11=21H2
Microsoft Windows 11 21h2<10.0.22000.1696
Microsoft Windows 11 22h2<10.0.22000.1413
Microsoft Windows Server 2022
Microsoft Windows Server 2022
Microsoft Windows Server 2022
Remediation
Event History
Mar 14, 2023
CVE Published
via Microsoft·07:00 AM
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·04:55 PM
Data Sourced
via MITRE·04:55 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2023-23392?
CVE-2023-23392 is classified as a critical remote code execution vulnerability.
2
How do I fix CVE-2023-23392?
To fix CVE-2023-23392, install the latest security patches provided by Microsoft corresponding to your affected version.
3
Which Microsoft products are affected by CVE-2023-23392?
CVE-2023-23392 affects Microsoft Windows 11 (21H2 and 22H2) and Windows Server 2022.
4
Can CVE-2023-23392 be exploited remotely?
Yes, CVE-2023-23392 can be exploited remotely without authentication.
5
What are the potential impacts of CVE-2023-23392?
Exploitation of CVE-2023-23392 could allow an attacker to execute arbitrary code on the affected system.