CVE-2023-21750
published 2023-01-10CVE-2023-21750: Windows Kernel Elevation of Privilege Vulnerability
PriorityP430high7.1CVSS 3.1
AVLACLPRLUINSUCNIHAH
EPSS
0.71%
49.5th percentile
Windows Kernel Elevation of Privilege Vulnerability
Affected
38 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | windows_10_version_1507 | >= 10.0.10240.0 < 10.0.10240.19685 | 10.0.10240.19685 |
| microsoft | windows_10_version_1607 | >= 10.0.14393.0 < 10.0.14393.5648 | 10.0.14393.5648 |
| microsoft | windows_10_version_1809 | >= 10.0.0 < 10.0.17763.3887 | 10.0.17763.3887 |
| microsoft | windows_10_version_1809 | >= 10.0.17763.0 < 10.0.17763.3887 | 10.0.17763.3887 |
| microsoft | windows_10_version_20h2 | >= 10.0.0 < 10.0.19042.2486 | 10.0.19042.2486 |
| microsoft | windows_10_version_21h2 | >= 10.0.19043.0 < 10.0.19044.2486 | 10.0.19044.2486 |
| microsoft | windows_10_version_22h2 | >= 10.0.19045.0 < 10.0.19045.2486 | 10.0.19045.2486 |
| microsoft | windows_11_version_21h2 | >= 10.0.0 < 10.0.22000.1455 | 10.0.22000.1455 |
| microsoft | windows_11_version_22h2 | >= 10.0.22621.0 < 10.0.22621.1105 | 10.0.22621.1105 |
| microsoft | windows_7 | >= 6.1.0 < 6.1.7601.26321 | 6.1.7601.26321 |
| microsoft | windows_7_service_pack_1 | >= 6.1.0 < 6.1.7601.26321 | 6.1.7601.26321 |
| microsoft | windows_8.1 | >= 6.3.0 < 6.3.9600.20778 | 6.3.9600.20778 |
| microsoft | windows_server_2008 | — | — |
| microsoft | windows_server_2008_r2_service_pack_1 | >= 6.1.7601.0 < 6.1.7601.26321 | 6.1.7601.26321 |
| microsoft | windows_server_2008_service_pack_2 | >= 6.0.6003.0 < 6.0.6003.21872 | 6.0.6003.21872 |
| microsoft | windows_server_2012 | — | — |
| microsoft | windows_server_2012 | >= 6.2.9200.0 < 6.2.9200.24075 | 6.2.9200.24075 |
| microsoft | windows_server_2012_r2 | >= 6.3.9600.0 < 6.3.9600.20778 | 6.3.9600.20778 |
| microsoft | windows_server_2016 | >= 10.0.14393.0 < 10.0.14393.5648 | 10.0.14393.5648 |
| microsoft | windows_server_2019 | >= 10.0.17763.0 < 10.0.17763.3887 | 10.0.17763.3887 |
| microsoft | windows_server_2022 | >= 10.0.20348.0 < 10.0.20348.1487 | 10.0.20348.1487 |
| msrc | windows_10 | — | — |
| msrc | windows_10_version_1607 | — | — |
| msrc | windows_10_version_1809 | — | — |
| msrc | windows_10_version_20h2 | — | — |
CVSS provenance
nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
vendor_msrc7.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Project0
The Windows Registry Adventure #7: Attack surface analysis - Project Zero
project_zero·2025-05-01
CVE-2010-0237 The Windows Registry Adventure #7: Attack surface analysis - Project Zero
Posted by Mateusz Jurczyk, Google Project Zero
In the first three blog posts of this series, I sought to outline what the Windows Registry actually is, its role, history, and where to find further information about it. In the subsequent three posts, my goal was to describe in detail how this mechanism works internally – from the perspective of its clients (e.g., user-mode applications running on Windows), the regf format used to encode hives, and finally the kernel itself, which contains its canonical implementation. I believe all these elements are essential for painting a complete picture of this subsystem, and in a way, it shows my own approach to security research. One could say that going through this tedious process of getting to know the target unnecessarily lengthens the total
Project0
The Windows Registry Adventure #1: Introduction and research results - Project Zero
project_zero·2024-04-01
CVE-2022-34707 The Windows Registry Adventure #1: Introduction and research results - Project Zero
Posted by Mateusz Jurczyk, Google Project Zero
In the 20-month period between May 2022 and December 2023, I thoroughly audited the Windows Registry in search of local privilege escalation bugs. It all started unexpectedly: I was in the process of developing a coverage-based Windows kernel fuzzer based on the Bochs x86 emulator (one of my favorite tools for security research: see Bochspwn, Bochspwn Reloaded, and my earlier font fuzzing infrastructure), and needed some binary formats to test it on. My first pick were PE files: they are very popular in the Windows environment, which makes it easy to create an initial corpus of input samples, and a basic fuzzing harness is equally easy to develop with just a single GetFileVersionInfoSizeW API call. The test was successful: even though I h
GHSA
GHSA-vm7v-r797-g9gr: Windows Kernel Elevation of Privilege Vulnerability
ghsa_unreviewed·2023-01-11·CVSS 7.8
CVE-2023-21774 [HIGH] CWE-269 GHSA-vm7v-r797-g9gr: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21675, CVE-2023-21747, CVE-2023-21748, CVE-2023-21749, CVE-2023-21750, CVE-2023-21754, CVE-2023-21755, CVE-2023-21772, CVE-2023-21773.
GHSA
GHSA-48fv-w5pm-wm33: Windows Kernel Elevation of Privilege Vulnerability
ghsa_unreviewed·2023-01-11·CVSS 7.8
CVE-2023-21772 [HIGH] CWE-269 GHSA-48fv-w5pm-wm33: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21675, CVE-2023-21747, CVE-2023-21748, CVE-2023-21749, CVE-2023-21750, CVE-2023-21754, CVE-2023-21755, CVE-2023-21773, CVE-2023-21774.
GHSA
GHSA-m626-6hq4-mf59: Windows Kernel Elevation of Privilege Vulnerability
ghsa_unreviewed·2023-01-11·CVSS 7.8
CVE-2023-21754 [HIGH] GHSA-m626-6hq4-mf59: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21675, CVE-2023-21747, CVE-2023-21748, CVE-2023-21749, CVE-2023-21750, CVE-2023-21755, CVE-2023-21772, CVE-2023-21773, CVE-2023-21774.
GHSA
GHSA-9397-p37c-vw49: Windows Kernel Elevation of Privilege Vulnerability
ghsa_unreviewed·2023-01-11·CVSS 7.8
CVE-2023-21675 [HIGH] GHSA-9397-p37c-vw49: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21747, CVE-2023-21748, CVE-2023-21749, CVE-2023-21750, CVE-2023-21754, CVE-2023-21755, CVE-2023-21772, CVE-2023-21773, CVE-2023-21774.
GHSA
GHSA-rqw2-67r2-92rw: Windows Kernel Elevation of Privilege Vulnerability
ghsa_unreviewed·2023-01-11·CVSS 7.8
CVE-2023-21773 [HIGH] CWE-269 GHSA-rqw2-67r2-92rw: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21675, CVE-2023-21747, CVE-2023-21748, CVE-2023-21749, CVE-2023-21750, CVE-2023-21754, CVE-2023-21755, CVE-2023-21772, CVE-2023-21774.
GHSA
GHSA-5gxx-hjrq-6vfc: Windows Kernel Elevation of Privilege Vulnerability
ghsa_unreviewed·2023-01-11·CVSS 7.8
CVE-2023-21750 [HIGH] GHSA-5gxx-hjrq-6vfc: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21675, CVE-2023-21747, CVE-2023-21748, CVE-2023-21749, CVE-2023-21754, CVE-2023-21755, CVE-2023-21772, CVE-2023-21773, CVE-2023-21774.
GHSA
GHSA-5xr8-6m2x-rfwc: Windows Kernel Elevation of Privilege Vulnerability
ghsa_unreviewed·2023-01-11·CVSS 7.8
CVE-2023-21749 [HIGH] GHSA-5xr8-6m2x-rfwc: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21675, CVE-2023-21747, CVE-2023-21748, CVE-2023-21750, CVE-2023-21754, CVE-2023-21755, CVE-2023-21772, CVE-2023-21773, CVE-2023-21774.
GHSA
GHSA-8r24-3mw9-93q4: Windows Kernel Elevation of Privilege Vulnerability
ghsa_unreviewed·2023-01-11·CVSS 7.8
CVE-2023-21747 [HIGH] GHSA-8r24-3mw9-93q4: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21675, CVE-2023-21748, CVE-2023-21749, CVE-2023-21750, CVE-2023-21754, CVE-2023-21755, CVE-2023-21772, CVE-2023-21773, CVE-2023-21774.
GHSA
GHSA-mf4h-3w62-2q52: Windows Kernel Elevation of Privilege Vulnerability
ghsa_unreviewed·2023-01-11·CVSS 7.8
CVE-2023-21755 [HIGH] CWE-269 GHSA-mf4h-3w62-2q52: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21675, CVE-2023-21747, CVE-2023-21748, CVE-2023-21749, CVE-2023-21750, CVE-2023-21754, CVE-2023-21772, CVE-2023-21773, CVE-2023-21774.
GHSA
GHSA-6m45-hp34-m9mw: Windows Kernel Elevation of Privilege Vulnerability
ghsa_unreviewed·2023-01-11·CVSS 7.8
CVE-2023-21748 [HIGH] GHSA-6m45-hp34-m9mw: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21675, CVE-2023-21747, CVE-2023-21749, CVE-2023-21750, CVE-2023-21754, CVE-2023-21755, CVE-2023-21772, CVE-2023-21773, CVE-2023-21774.
Microsoft
Windows Kernel Elevation of Privilege Vulnerability
vendor_msrc·2023-01-10·CVSS 7.1
CVE-2023-21750 [HIGH] CWE-284 Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
FAQ: According to the CVSS metrics, successful exploitation of this vulnerability could lead to no loss of confidentiality (C:N) but have major impact on integrity (I:H) and on availability (A:H). What does that mean for this vulnerability?
This vulnerability does not allow disclosure of any confidential information, but could allow an attacker to delete data that could include data that results in the service being unavailable.
FAQ: What privileges could be gained by an attacker who successfully exploited this vulnerability?
An attacker who successfully exploited this vulnerability could gain SYSTEM privileges.
Windows Virtual Registry Provider: Windows Virtual Registry Provider
Microsoft: Microsoft
Customer Action Required: Yes
Im
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-01-10
Published