CVE-2023-36396: Windows Compressed Folder Remote Code Execution Vulnerability
Published Nov 14, 2023
·Updated
Windows Compressed Folder Remote Code Execution Vulnerability
Affected Software
8 affected componentsFixes available
Microsoft Windows 11=23H2
Microsoft Windows 11=23H2
Microsoft Windows 11=22H2
Microsoft Windows 11=22H2
Microsoft Windows 11 22h2<10.0.22621.2715
Microsoft Windows 11 22h2<10.0.22621.2715
Microsoft Windows 11 23h2<10.0.22621.2715
Microsoft Windows 11 23h2<10.0.22621.2715
Remediation
Event History
Nov 14, 2023
CVE Published
08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·05:57 PM
Data Sourced
via MITRE·05:57 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2023-36396?
CVE-2023-36396 is a Windows vulnerability that allows remote code execution in Windows Compressed Folder.
2
How does CVE-2023-36396 affect Windows?
CVE-2023-36396 affects Windows 11 versions 22H2 and 23H2 on both x64 and arm64 architectures.
3
What is the severity of CVE-2023-36396?
CVE-2023-36396 has a severity rating of 7.8, which is considered high.
4
How can I fix CVE-2023-36396?
To fix CVE-2023-36396, you need to install the security patch provided by Microsoft. You can find the patch at the following URL: [KB5032190](https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5032190)
5
Where can I find more information about CVE-2023-36396?
You can find more information about CVE-2023-36396 on the Microsoft Security Response Center website: [CVE-2023-36396](https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36396)