CVE-2023-36760: 3D Viewer Remote Code Execution Vulnerability
Published Sep 12, 2023
·Updated
3D Viewer Remote Code Execution Vulnerability
Affected Software
2 affected componentsFixes available
Microsoft 3D Viewer
Microsoft 3D Viewer<7.2307.27042.0
Remediation
Event History
Sep 12, 2023
CVE Published
07:00 AM
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·04:58 PM
Data Sourced
via MITRE·04:58 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2023-36760?
CVE-2023-36760 is a vulnerability that allows remote attackers to execute arbitrary code on a system with the 3D Viewer software installed.
2
How severe is CVE-2023-36760?
CVE-2023-36760 has a severity rating of 7.8, which is considered high.
3
How does CVE-2023-36760 affect the Microsoft 3D Viewer software?
CVE-2023-36760 affects Microsoft 3D Viewer with versions up to 7.2307.27042.0.
4
Is there a patch available for CVE-2023-36760?
Yes, Microsoft has released a patch for CVE-2023-36760. You can find the patch at the following URL: https://www.microsoft.com/en-us/p/3d-viewer/9nblggh42ths?activetab=pivot:overviewtab
5
How can I mitigate the risk of CVE-2023-36760?
To mitigate the risk of CVE-2023-36760, it is recommended to apply the patch provided by Microsoft or update to a version of Microsoft 3D Viewer that is not affected by the vulnerability.