Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-23409


Client Server Run-Time Subsystem (CSRSS) Information Disclosure Vulnerability


Published

2023-03-14T17:15:14.317

Last Modified

2024-11-21T07:46:08.073

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-20
  • Type: Primary
    CWE-668

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System microsoft windows_10_1507 < 10.0.10240.19805 Yes
Operating System microsoft windows_10_1607 < 10.0.14393.5786 Yes
Operating System microsoft windows_10_1809 < 10.0.17763.4131 Yes
Operating System microsoft windows_10_20h2 < 10.0.19042.2728 Yes
Operating System microsoft windows_10_21h2 < 10.0.19044.2728 Yes
Operating System microsoft windows_10_22h2 < 10.0.19045.2728 Yes
Operating System microsoft windows_11_21h2 < 10.0.22000.1696 Yes
Operating System microsoft windows_11_22h2 < 10.0.22000.1413 Yes
Operating System microsoft windows_server_2008 - Yes
Operating System microsoft windows_server_2008 - Yes
Operating System microsoft windows_server_2008 r2 Yes
Operating System microsoft windows_server_2012 - Yes
Operating System microsoft windows_server_2012 r2 Yes
Operating System microsoft windows_server_2016 - Yes
Operating System microsoft windows_server_2019 - Yes
Operating System microsoft windows_server_2022 - Yes

References