First published: Tue Nov 14 2023(Updated: )
Windows Search Service Elevation of Privilege Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2019 | ||
Windows 11 | =21H2 | |
Windows 11 | =21H2 | |
Microsoft Windows Server 2022 | ||
Microsoft Windows Server 2022 | ||
Microsoft Windows 10 | <10.0.10240.20308 | |
Microsoft Windows 10 | <10.0.10240.20308 | |
Microsoft Windows 10 | <10.0.14393.6452 | |
Microsoft Windows 10 | <10.0.14393.6452 | |
Microsoft Windows 10 | <10.0.17763.5122 | |
Microsoft Windows 10 | <10.0.17763.5122 | |
Microsoft Windows 10 | <10.0.17763.5122 | |
Microsoft Windows 10 | <10.0.19041.3693 | |
Microsoft Windows 10 | <10.0.19041.3693 | |
Microsoft Windows 10 | <10.0.19041.3693 | |
Microsoft Windows 10 | <10.0.19045.3693 | |
Microsoft Windows 10 | <10.0.19045.3693 | |
Microsoft Windows 10 | <10.0.19045.3693 | |
Windows 11 | <10.0.22000.2600 | |
Windows 11 | <10.0.22000.2600 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2022 | ||
Windows 10 | =1809 | |
Windows 10 | =1809 | |
Windows 10 | =1809 | |
Windows 10 | =22H2 | |
Windows 10 | =22H2 | |
Windows 10 | =22H2 | |
Windows 10 | =1607 | |
Windows 10 | =1607 | |
Windows 10 | =21H2 | |
Windows 10 | =21H2 | |
Windows 10 | =21H2 | |
Windows 10 | ||
Windows 10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-36394 is a vulnerability in the Windows Search Service that allows an attacker to elevate their privileges.
CVE-2023-36394 is classified as a high severity vulnerability with a severity value of 7.
Windows 10 versions 21H2 and 22H2, Windows Server 2022, Windows Server 2016, Windows 10 version 1809, Windows 10 version 1607, Windows Server 2019, and Windows 11 versions 21H2 are affected by CVE-2023-36394.
To fix CVE-2023-36394, you should apply the respective patches provided by Microsoft. Please refer to the following URLs for the patches: Windows 10 (21H2): [URL1], Windows 10 (22H2): [URL2], Windows Server 2022: [URL3], Windows Server 2016: [URL4], Windows 10 (1809): [URL5], Windows 10 (1607): [URL6], Windows Server 2019: [URL7], Windows 11 (21H2): [URL8].
You can find more information about CVE-2023-36394 on Microsoft's Security Update Guide: [URL9].