CVE-2023-41772Improper Access Control in Microsoft Windows 10 Version 1809

Severity
7.8HIGHCNA
No vector
EPSS
12.7%
top 5.98%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 10
Latest updateFeb 26

Description

Win32k Elevation of Privilege Vulnerability Win32k Elevation of Privilege Vulnerability

Affected Packages7 packages

CVEListV5microsoft/windows_server_201910.0.17763.010.0.17763.4974
CVEListV5microsoft/windows_server_202210.0.20348.010.0.20348.2031
CVEListV5microsoft/windows_10_version_180910.0.17763.010.0.17763.4974+1
CVEListV5microsoft/windows_10_version_21h210.0.19043.010.0.19041.3570
CVEListV5microsoft/windows_10_version_22h210.0.19045.010.0.19045.3570

🔴Vulnerability Details

1
CVEList
Win32k Elevation of Privilege Vulnerability2023-10-10

📋Vendor Advisories

1
Microsoft
Win32k Elevation of Privilege Vulnerability2023-10-10

🕵️Threat Intelligence

9
Projectzero
A Deep Dive into the GetProcessHandleFromHwnd API2026-02-26
Qualys
Qualys Review: Microsoft and Adobe Security Patches October 2023 | Qualys2023-10-10
Trendmicro
The October 2023 Security Update Review2023-10-10
Bleepingcomputer
Microsoft October 2023 Patch Tuesday fixes 3 zero-days, 104 flaws2023-10-10
Trendmicro
The October 2023 Security Update Review2023-10-10