CVE-2023-38148: Internet Connection Sharing (ICS) Remote Code Execution Vulnerability
Published Sep 12, 2023
·Updated
Internet Connection Sharing (ICS) Remote Code Execution Vulnerability
Affected Software
17 affected componentsFixes available
Microsoft Windows 11=22H2
Microsoft Windows 11=22H2
Microsoft Windows 11=21H2
Microsoft Windows 11=21H2
Microsoft Windows Server 2022
Microsoft Windows Server 2022
Microsoft Windows 10 21h2<10.0.19045.3448
Microsoft Windows 10 22h2<10.0.19045.3448
Microsoft Windows 11 21h2<10.0.22000.2416
Microsoft Windows Server 2022<10.0.20348.1960
Microsoft Windows 10=22H2
Microsoft Windows 10=22H2
Microsoft Windows 10=22H2
Microsoft Windows 10=21H2
Microsoft Windows 10=21H2
Microsoft Windows 10=21H2
Microsoft Windows 10 21h2<10.0.19044.3448
Remediation
Event History
Sep 12, 2023
CVE Published
via Microsoft·07:00 AM
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·04:58 PM
Data Sourced
via MITRE·04:58 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2023-38148?
CVE-2023-38148 refers to the Internet Connection Sharing (ICS) Remote Code Execution Vulnerability.
2
What software is affected by CVE-2023-38148?
Windows 10 (version 21H2), Windows Server 2022 (Server Core Installation), Windows 11 (version 21H2).
3
How severe is CVE-2023-38148?
CVE-2023-38148 has a severity rating of 8.8 (critical).
4
What is the remedy for CVE-2023-38148 for Windows 10 (version 21H2)?
The remedy for CVE-2023-38148 for Windows 10 (version 21H2) is to install the patch with KB5030211.
5
Where can I find more information about CVE-2023-38148?
You can find more information about CVE-2023-38148 at the following reference link: [CVE-2023-38148](https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-38148).