CVE-2023-38186: Windows Mobile Device Management Elevation of Privilege Vulnerability
Windows Mobile Device Management Elevation of Privilege Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19045.3324Patch KB5029244 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19044.3324Patch KB5029244 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22621.2134Patch KB5029263 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.20348.1906Fixed in 10.0.20348.1903Patch KB5029367 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22000.2295Patch KB5029253
Event History
Frequently Asked Questions
What is CVE-2023-38186?
CVE-2023-38186 is a critical vulnerability in Windows Mobile Device Management that allows for elevation of privilege.
Which software are affected by CVE-2023-38186?
CVE-2023-38186 affects Windows Server 2022, Windows 10 (versions 21H2 and 22H2), and Windows 11 (versions 21H2 and 22H2).
How severe is CVE-2023-38186?
CVE-2023-38186 has a severity rating of 9.8, which is considered critical.
How can I fix CVE-2023-38186?
To fix CVE-2023-38186, you should apply the corresponding patches provided by Microsoft. Please refer to the vendor's website for specific patch URLs.
Where can I find more information about CVE-2023-38186?
You can find more information about CVE-2023-38186 on the Microsoft Security Response Center's website at https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-38186.