CVE-2023-21674

Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
microsoftCNA
8.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:F/RL:O/RC:C
CISA-ADPADP
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 92%
VendorProductVersion
microsoftwindows_10_1507
𝑥
< 10.0.10240.19685
microsoftwindows_10_1607
𝑥
< 10.0.14393.5648
microsoftwindows_10_1809
𝑥
< 10.0.17763.3887
microsoftwindows_10_20h2
𝑥
< 10.0.19042.2486
microsoftwindows_10_21h2
𝑥
< 10.0.19044.2486
microsoftwindows_10_22h2
𝑥
< 10.0.19045.2486
microsoftwindows_11_21h2
𝑥
< 10.0.22000.1455
microsoftwindows_11_22h2
𝑥
< 10.0.22621.1105
microsoftwindows_rt_8.1
-
microsoftwindows_server_2016
𝑥
< 10.0.14393.5648
microsoftwindows_server_2019
𝑥
< 10.0.17763.3887
microsoftwindows_server_2022
𝑥
< 10.0.20348.1487
𝑥
= Vulnerable software versions