CVE-2023-36802: Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability
Microsoft Streaming Service Proxy contains an unspecified vulnerability that allows for privilege escalation.
Other sources
Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19045.3448Patch KB5030211 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19044.3448Patch KB5030211 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22621.2283Patch KB5030219 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22000.2416Patch KB5030217 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.20348.1970Fixed in 10.0.20348.1964Patch KB5030325 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.4851Patch KB5030214
Event History
Frequently Asked Questions
What is CVE-2023-36802?
CVE-2023-36802 is a privilege escalation vulnerability in Microsoft Streaming Service Proxy.
What is the severity of CVE-2023-36802?
CVE-2023-36802 has a severity rating of 7.8 (high).
How does CVE-2023-36802 affect Windows Server 2019?
Windows Server 2019 is affected by CVE-2023-36802 and requires patch KB5030214 to fix the vulnerability.
How does CVE-2023-36802 affect Windows 11?
Windows 11 is affected by CVE-2023-36802 and requires patch KB5030217 (for version 21H2) or KB5030219 (for version 22H2) to fix the vulnerability.
How does CVE-2023-36802 affect Windows 10?
Windows 10 is affected by CVE-2023-36802 and requires patch KB5030214 (for version 1809), KB5030211 (for version 21H2), or KB5030211 (for version 22H2) to fix the vulnerability.