Remote Code Execution Vulnerability In Windows HTTP Protocol Stack

Remote Code Execution Vulnerability In Windows HTTP Protocol Stack

On March 23, 2023, Microsoft released Internet Control Message Protocol (ICMP) Remote Code Execution Vulnerability ( CVE-2023-23415 )

Remote Code Execution Vulnerability In Windows HTTP Protocol Stack

Affected Systems

  • Microsoft Windows 10 1507
  • Microsoft Windows 10 1809
  • Microsoft Windows 10 20h2
  • Microsoft Windows 10 21h2
  • Microsoft Windows 10 22h2
  • Microsoft Windows Server 2008:-:sp2
  • Microsoft Windows Server 2008:r2:sp1
  • Microsoft Windows Server 2012
  • Microsoft Windows Server 2012:r2
  • Microsoft Windows Server 2016
  • Microsoft Windows Server 2019
  • Microsoft Windows Server 2022

IoC’s

-

Recommended Solution(s)

It is recommended to check the update tab below:
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-23415#securityUpdates

Mitigations

-

CVE / CWE

CVE-2023-23415

Related Website(s)

* Vulnerabilities with a CVSS 3.1 score between 7.0 and 8.9 are evaluated to be “high” whereas vulnerabilities with a CVSS 3.1 score between 9.0 and 10.0 are evaluated to be “critical”.