Microsoft QUIC是美国微软(Microsoft)公司的一个网络传输协议。 Microsoft QUIC存在安全漏洞。攻击者利用该漏洞导致系统拒绝服务。以下产品和版本受到影响:Microsoft Visual Studio 2022 version 17.6,Microsoft Visual Studio 2022 version 17.7,.NET 7.0,Windows Server 2022,Windows Server 2022 (Server Core installation),Wi
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Microsoft Visual Studio 2022 version 17.2 | 17.2.0 ~ 17.2.21 | - |
|
| Microsoft | Microsoft Visual Studio 2022 version 17.4 | 17.4.0 ~ 17.4.13 | - |
|
| Microsoft | Microsoft Visual Studio 2022 version 17.6 | 17.6.0 ~ 17.6.9 | - |
|
| Microsoft | Microsoft Visual Studio 2022 version 17.7 | 17.7.0 ~ 17.7.6 | - |
|
| Microsoft | Windows Server 2022 | 10.0.20348.0 ~ 10.0.20348.2031 | - |
|
| Microsoft | Windows 11 version 21H2 | 10.0.0 ~ 10.0.22000.2538 | - |
|
| Microsoft | Windows 11 version 22H2 | 10.0.22621.0 ~ 10.0.22621.2428 | - |
|
| Microsoft | .NET 7.0 | 7.0.0 ~ 7.0.13 | - |
|
| Microsoft | PowerShell 7.3 | 7.3.0 ~ 7.3.9 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-35349 | 9.8 CRITICAL | Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability |
| CVE-2023-36434 | 9.8 CRITICAL | Windows IIS Server Elevation of Privilege Vulnerability |
| CVE-2023-36415 | 8.8 HIGH | Azure Identity SDK Remote Code Execution Vulnerability |
| CVE-2023-36577 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
| CVE-2023-36414 | 8.8 HIGH | Azure Identity SDK Remote Code Execution Vulnerability |
| CVE-2023-36419 | 8.8 HIGH | Azure HDInsight Apache Oozie Workflow Scheduler XXE Elevation of Privilege Vulnerability |
| CVE-2023-36569 | 8.4 HIGH | Microsoft Office Elevation of Privilege Vulnerability |
| CVE-2023-38166 | 8.1 HIGH | Layer 2 Tunneling Protocol Remote Code Execution Vulnerability |
| CVE-2023-41774 | 8.1 HIGH | Layer 2 Tunneling Protocol Remote Code Execution Vulnerability |
| CVE-2023-41773 | 8.1 HIGH | Layer 2 Tunneling Protocol Remote Code Execution Vulnerability |
| CVE-2023-41771 | 8.1 HIGH | Layer 2 Tunneling Protocol Remote Code Execution Vulnerability |
| CVE-2023-41770 | 8.1 HIGH | Layer 2 Tunneling Protocol Remote Code Execution Vulnerability |
| CVE-2023-41769 | 8.1 HIGH | Layer 2 Tunneling Protocol Remote Code Execution Vulnerability |
| CVE-2023-41765 | 8.1 HIGH | Layer 2 Tunneling Protocol Remote Code Execution Vulnerability |
| CVE-2023-41768 | 8.1 HIGH | Layer 2 Tunneling Protocol Remote Code Execution Vulnerability |
| CVE-2023-41767 | 8.1 HIGH | Layer 2 Tunneling Protocol Remote Code Execution Vulnerability |
| CVE-2023-36778 | 8.0 HIGH | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2023-36598 | 7.8 HIGH | Microsoft WDAC ODBC Driver Remote Code Execution Vulnerability |
| CVE-2023-36726 | 7.8 HIGH | Windows Internet Key Exchange (IKE) Extension Elevation of Privilege Vulnerability |
| CVE-2023-36594 | 7.8 HIGH | Windows Graphics Component Elevation of Privilege Vulnerability |
Showing top 20 of 103 CVEs. View all on vendor page → →
No comments yet