First published: Tue Jul 11 2023(Updated: )
Azure Active Directory Security Feature Bypass Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2019 | ||
Windows 11 | =22H2 | |
Windows 11 | =22H2 | |
Windows 11 | =21H2 | |
Windows 11 | =21H2 | |
Microsoft Windows Server 2022 | ||
Microsoft Windows Server 2022 | ||
Microsoft Windows 10 | <10.0.10240.20048 | |
Microsoft Windows 10 | <10.0.14393.6085 | |
Microsoft Windows 10 | <10.0.17763.4645 | |
Microsoft Windows 10 | <10.0.19041.3208 | |
Microsoft Windows 10 | <10.0.19045.3208 | |
Windows 11 | <10.0.22000.2176 | |
Windows 11 | <10.0.22621.1992 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2022 | ||
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2016 | ||
Windows 10 | =1809 | |
Windows 10 | =1809 | |
Windows 10 | =1809 | |
Windows 10 | =22H2 | |
Windows 10 | =22H2 | |
Windows 10 | =22H2 | |
Windows 10 | =1607 | |
Windows 10 | =1607 | |
Windows 10 | =21H2 | |
Windows 10 | =21H2 | |
Windows 10 | =21H2 | |
Windows 10 | ||
Windows 10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-36871 is a vulnerability that allows bypassing security features in Azure Active Directory.
The severity of CVE-2023-36871 is high, with a CVSS score of 6.5.
The affected software versions include Microsoft Windows 10 (versions 1507, 1607, 1809, 21H2, 22H2), Windows 11 (versions 21H2, 22H2), Windows Server 2016, Windows Server 2019, and Windows Server 2022.
To fix CVE-2023-36871, install the appropriate patches provided by Microsoft for your specific software version. Please refer to the Microsoft support page for more information and download links.
You can find more information about CVE-2023-36871, including details and remediation steps, on the Microsoft Security Response Center (MSRC) website.