CVE-2023-33127
published 2023-07-11CVE-2023-33127: .NET and Visual Studio Elevation of Privilege Vulnerability
PriorityP346high8.1CVSS 3.1
AVNACHPRNUINSUCHIHAH
EPSS
1.87%
76.9th percentile
.NET and Visual Studio Elevation of Privilege Vulnerability
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | microsoft_visual_studio_2022_version_17.0 | >= 17.0.0 < 17.0.23 | 17.0.23 |
| microsoft | microsoft_visual_studio_2022_version_17.2 | >= 17.2.0 < 17.2.17 | 17.2.17 |
| microsoft | microsoft_visual_studio_2022_version_17.4 | >= 17.4.0 < 17.4.9 | 17.4.9 |
| microsoft | microsoft_visual_studio_2022_version_17.6 | >= 17.6.0 < 17.6.5 | 17.6.5 |
| microsoft | net | >= 6.0.0 < 6.0.20 | 6.0.20 |
| microsoft | net | >= 7.0.0 < 7.0.9 | 7.0.9 |
| microsoft | net_6.0 | >= 6.0.0 < 6.0.20 | 6.0.20 |
| microsoft | net_7.0 | >= 7.0.0 < 7.0.9 | 7.0.9 |
| microsoft | powershell_7.2 | >= 7.2.0 < 7.2.13 | 7.2.13 |
| microsoft | powershell_7.3 | >= 7.3.0 < 7.3.6 | 7.3.6 |
| microsoft | visual_studio_2022 | — | — |
| microsoft | visual_studio_2022 | >= 17.0 < 17.0.23 | 17.0.23 |
| microsoft | visual_studio_2022 | >= 17.2.0 < 17.2.17 | 17.2.17 |
| microsoft | visual_studio_2022 | >= 17.4.0 < 17.4.9 | 17.4.9 |
| microsoft | visual_studio_2022 | >= 17.6.0 < 17.6.5 | 17.6.5 |
| msrc | microsoft_visual_studio_2022_version_17.0 | — | — |
| msrc | microsoft_visual_studio_2022_version_17.2 | — | — |
| msrc | microsoft_visual_studio_2022_version_17.4 | — | — |
| msrc | microsoft_visual_studio_2022_version_17.6 | — | — |
| msrc | net_6.0 | — | — |
| msrc | net_7.0 | — | — |
| msrc | powershell_7.2 | — | — |
| msrc | powershell_7.3 | — | — |
CVSS provenance
nvdv3.18.1HIGHCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
ghsa8.1HIGH
osv8.1HIGH
vendor_msrc8.1HIGH
vendor_redhat8.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Siemens ST7 ScadaConnect
cisa_ics·2024-06-13·CVSS 7.5
[HIGH] Siemens ST7 ScadaConnect
ICS Advisory
##
Siemens ST7 ScadaConnect
Release DateJune 13, 2024
Alert CodeICSA-24-165-04
Related topics:
Industrial Control System Vulnerabilities, Industrial Control Systems
As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT Security Advisories (CERT Services | Services | Siemens Global).
View CSAF
## 1. EXECUTIVE SUMMARY
- CVSS v3 8.2
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Siemens
- Equipment: ST7 ScadaConnect
- Vulnerabilities: Integer Overflow or Wraparound, Double Free, Improper Certificate Validation, Inefficient Regular Ex
Microsoft
.NET and Visual Studio Elevation of Privilege Vulnerability
vendor_msrc·2023-07-11·CVSS 8.1
CVE-2023-33127 [HIGH] CWE-1220 .NET and Visual Studio Elevation of Privilege Vulnerability
.NET and Visual Studio Elevation of Privilege Vulnerability
FAQ: What privileges could be gained by an attacker who successfully exploited the vulnerability?
The attacker would gain the rights of the user that is running the affected application.
FAQ: According to the CVSS metric, the attack vector is network (AV:N). How could an attacker exploit this vulnerability?
An attacker could exploit this vulnerability by abusing the .NET diagnostics server to gain elevation of privileges.
FAQ: According to the CVSS metric, the attack complexity is high (AC:H). What does that mean for this vulnerability?
Successful exploitation of this vulnerability requires an attacker to win a race condition and also to take additional actions prior to exploitation to prepare the target environment.
.NET and
Red Hat
dotnet: elevation of privilege and code execution by taking control of the diagnostic port
vendor_redhat·2023-07-11·CVSS 8.1
CVE-2023-33127 [HIGH] dotnet: elevation of privilege and code execution by taking control of the diagnostic port
dotnet: elevation of privilege and code execution by taking control of the diagnostic port
.NET and Visual Studio Elevation of Privilege Vulnerability
A vulnerability was found in dotNET applications where the Windows dotNET runtime exposes an IPC diagnostic endpoint named pipe for collecting diagnostic information and debugging. A remote attacker can exploit DCOM applications that expose a diagnostic port to achieve cross-session/cross-user elevation of privilege (EoP) and code execution by taking control of the diagnostic port.
Statement: This issue on affects dotNET on windows. Red Hat offerings are not affected by this CVE-2023-33127.
Package: rh-dotnet60-dotnet (.NET 6.0 on Red Hat Enterprise Linux) - Not affected
Package: dotnet6.0 (Red Hat Enterprise Linux 8) - Not affected
Pa
GHSA
Microsoft Security Advisory CVE-2023-33127: .NET Remote Code Execution Vulnerability
ghsa·2023-07-11·CVSS 8.1
CVE-2023-33127 [HIGH] CWE-1220 Microsoft Security Advisory CVE-2023-33127: .NET Remote Code Execution Vulnerability
Microsoft Security Advisory CVE-2023-33127: .NET Remote Code Execution Vulnerability
# Microsoft Security Advisory CVE-2023-33127: .NET Remote Code Execution Vulnerability
## Executive summary
Microsoft is releasing this security advisory to provide information about a vulnerability in .NET 7.0 and .NET 6.0. This advisory also provides guidance on what developers can do to update their applications to remove this vulnerability.
A vulnerability exists in .NET applications where the diagnostic server can be exploited to achieve cross-session/cross-user elevation of privilege (EoP) and code execution.
## Announcement
Announcement for this issue can be found at https://github.com/dotnet/announcements/issues/263
### Mitigation factors
Microsoft has not identified any mitigating factors
OSV
Microsoft Security Advisory CVE-2023-33127: .NET Remote Code Execution Vulnerability
osv·2023-07-11·CVSS 8.1
CVE-2023-33127 [HIGH] Microsoft Security Advisory CVE-2023-33127: .NET Remote Code Execution Vulnerability
Microsoft Security Advisory CVE-2023-33127: .NET Remote Code Execution Vulnerability
# Microsoft Security Advisory CVE-2023-33127: .NET Remote Code Execution Vulnerability
## Executive summary
Microsoft is releasing this security advisory to provide information about a vulnerability in .NET 7.0 and .NET 6.0. This advisory also provides guidance on what developers can do to update their applications to remove this vulnerability.
A vulnerability exists in .NET applications where the diagnostic server can be exploited to achieve cross-session/cross-user elevation of privilege (EoP) and code execution.
## Announcement
Announcement for this issue can be found at https://github.com/dotnet/announcements/issues/263
### Mitigation factors
Microsoft has not identified any mitigating factors
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-07-11
Published