Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.832301
Category:Windows : Microsoft Bulletins
Title:Microsoft Windows Multiple Vulnerabilities (KB5028166)
Summary:This host is missing an important security; update according to Microsoft KB5028166
Description:Summary:
This host is missing an important security
update according to Microsoft KB5028166

Vulnerability Insight:
Multiple flaws exist due to:

- A Remote Code Execution Vulnerability in Microsoft Message Queuing.

- An Elevation of Privilege Vulnerability in Windows Partition Management Driver.

- An Information Disclosure Vulnerability in Windows Netlogon.

For more information about the vulnerabilities refer to Reference links.

Vulnerability Impact:
Successful exploitation will allow an
attacker to elevate privileges, execute arbitrary commands, bypass security
feature, disclose information and conduct DoS attacks.

Affected Software/OS:
- Microsoft Windows 10 Version 20H2 for x64-based Systems

- Microsoft Windows 10 Version 20H2 for 32-bit Systems

- Microsoft Windows 10 Version 21H2 for 32-bit Systems

- Microsoft Windows 10 Version 21H2 for x64-based Systems

- Microsoft Windows 10 Version 22H2 for x64-based Systems

- Microsoft Windows 10 Version 22H2 for 32-bit Systems

Solution:
The vendor has released updates. Please see
the references for more information.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2023-35306
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35306
Common Vulnerability Exposure (CVE) ID: CVE-2023-35303
USB Audio Class System Driver Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35303
Common Vulnerability Exposure (CVE) ID: CVE-2023-33174
Windows Cryptographic Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-33174
Common Vulnerability Exposure (CVE) ID: CVE-2023-21526
Windows Netlogon Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21526
Common Vulnerability Exposure (CVE) ID: CVE-2023-36871
Azure Active Directory Security Feature Bypass Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36871
Common Vulnerability Exposure (CVE) ID: CVE-2023-33154
Windows Partition Management Driver Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-33154
Common Vulnerability Exposure (CVE) ID: CVE-2023-32055
Active Template Library Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32055
Common Vulnerability Exposure (CVE) ID: CVE-2023-32054
Volume Shadow Copy Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32054
Common Vulnerability Exposure (CVE) ID: CVE-2023-32044
Microsoft Message Queuing Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32044
Common Vulnerability Exposure (CVE) ID: CVE-2023-35309
Microsoft Message Queuing Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35309
Common Vulnerability Exposure (CVE) ID: CVE-2023-35362
Windows Clip Service Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35362
Common Vulnerability Exposure (CVE) ID: CVE-2023-35361
Windows Kernel Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35361
Common Vulnerability Exposure (CVE) ID: CVE-2023-35305
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35305
Common Vulnerability Exposure (CVE) ID: CVE-2023-35296
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35296
Common Vulnerability Exposure (CVE) ID: CVE-2023-32085
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32085
Common Vulnerability Exposure (CVE) ID: CVE-2023-35308
Windows MSHTML Platform Security Feature Bypass Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35308
Common Vulnerability Exposure (CVE) ID: CVE-2023-35356
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35356
http://packetstormsecurity.com/files/174115/Microsoft-Windows-Kernel-Arbitrary-Read.html
http://packetstormsecurity.com/files/174118/Microsoft-Windows-Kernel-Security-Descriptor-Use-After-Free.html
http://packetstormsecurity.com/files/176451/Microsoft-Windows-Registry-Predefined-Keys-Privilege-Escalation.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-35365
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35365
Common Vulnerability Exposure (CVE) ID: CVE-2023-35302
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35302
Common Vulnerability Exposure (CVE) ID: CVE-2023-33169
Remote Procedure Call Runtime Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-33169
Common Vulnerability Exposure (CVE) ID: CVE-2023-35367
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35367
Common Vulnerability Exposure (CVE) ID: CVE-2023-32053
Windows Installer Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32053
Common Vulnerability Exposure (CVE) ID: CVE-2023-32057
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32057
Common Vulnerability Exposure (CVE) ID: CVE-2023-32056
Windows Server Update Service (WSUS) Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32056
Common Vulnerability Exposure (CVE) ID: CVE-2023-33168
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-33168
Common Vulnerability Exposure (CVE) ID: CVE-2023-35364
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35364
Common Vulnerability Exposure (CVE) ID: CVE-2023-32037
Windows Layer-2 Bridge Network Driver Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32037
Common Vulnerability Exposure (CVE) ID: CVE-2023-35366
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35366
Common Vulnerability Exposure (CVE) ID: CVE-2023-35357
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35357
http://packetstormsecurity.com/files/174116/Microsoft-Windows-Kernel-Unsafe-Reference.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-35299
Windows Common Log File System Driver Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35299
Common Vulnerability Exposure (CVE) ID: CVE-2023-36874
Windows Error Reporting Service Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36874
http://packetstormsecurity.com/files/174843/Microsoft-Error-Reporting-Local-Privilege-Elevation.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-35304
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35304
Common Vulnerability Exposure (CVE) ID: CVE-2023-32038
Microsoft ODBC Driver Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32038
Common Vulnerability Exposure (CVE) ID: CVE-2023-33155
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-33155
Common Vulnerability Exposure (CVE) ID: CVE-2023-35363
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35363
Common Vulnerability Exposure (CVE) ID: CVE-2023-35360
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35360
Common Vulnerability Exposure (CVE) ID: CVE-2023-35358
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35358
http://packetstormsecurity.com/files/174117/Microsoft-Windows-Kernel-Unsafe-Reference.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-35353
Connected User Experiences and Telemetry Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35353
Common Vulnerability Exposure (CVE) ID: CVE-2023-35347
Microsoft Install Service Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35347
Common Vulnerability Exposure (CVE) ID: CVE-2023-35343
Windows Geolocation Service Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35343
Common Vulnerability Exposure (CVE) ID: CVE-2023-35342
Windows Image Acquisition Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35342
Common Vulnerability Exposure (CVE) ID: CVE-2023-35341
Microsoft DirectMusic Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35341
Common Vulnerability Exposure (CVE) ID: CVE-2023-35340
Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35340
Common Vulnerability Exposure (CVE) ID: CVE-2023-35339
Windows CryptoAPI Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35339
Common Vulnerability Exposure (CVE) ID: CVE-2023-35338
Windows Peer Name Resolution Protocol Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35338
Common Vulnerability Exposure (CVE) ID: CVE-2023-35337
Win32k Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35337
Common Vulnerability Exposure (CVE) ID: CVE-2023-35336
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35336
Common Vulnerability Exposure (CVE) ID: CVE-2023-35332
Windows Remote Desktop Protocol Security Feature Bypass
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35332
Common Vulnerability Exposure (CVE) ID: CVE-2023-35330
Windows Extended Negotiation Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35330
Common Vulnerability Exposure (CVE) ID: CVE-2023-35329
Windows Authentication Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35329
Common Vulnerability Exposure (CVE) ID: CVE-2023-35328
Windows Transaction Manager Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35328
Common Vulnerability Exposure (CVE) ID: CVE-2023-35326
Windows CDP User Components Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35326
Common Vulnerability Exposure (CVE) ID: CVE-2023-35325
Windows Print Spooler Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35325
Common Vulnerability Exposure (CVE) ID: CVE-2023-35324
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35324
Common Vulnerability Exposure (CVE) ID: CVE-2023-35320
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35320
Common Vulnerability Exposure (CVE) ID: CVE-2023-35319
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35319
Common Vulnerability Exposure (CVE) ID: CVE-2023-35318
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35318
Common Vulnerability Exposure (CVE) ID: CVE-2023-35316
Remote Procedure Call Runtime Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35316
Common Vulnerability Exposure (CVE) ID: CVE-2023-35315
Windows Layer-2 Bridge Network Driver Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35315
Common Vulnerability Exposure (CVE) ID: CVE-2023-35314
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35314
Common Vulnerability Exposure (CVE) ID: CVE-2023-35313
Windows Online Certificate Status Protocol (OCSP) SnapIn Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35313
Common Vulnerability Exposure (CVE) ID: CVE-2023-35312
Microsoft VOLSNAP.SYS Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35312
Common Vulnerability Exposure (CVE) ID: CVE-2023-35300
Remote Procedure Call Runtime Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35300
Common Vulnerability Exposure (CVE) ID: CVE-2023-35297
Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35297
Common Vulnerability Exposure (CVE) ID: CVE-2023-32049
Windows SmartScreen Security Feature Bypass Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32049
Common Vulnerability Exposure (CVE) ID: CVE-2023-32046
Windows MSHTML Platform Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32046
http://seclists.org/fulldisclosure/2023/Jul/43
Common Vulnerability Exposure (CVE) ID: CVE-2023-32045
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32045
Common Vulnerability Exposure (CVE) ID: CVE-2023-32043
Windows Remote Desktop Security Feature Bypass Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32043
Common Vulnerability Exposure (CVE) ID: CVE-2023-32042
OLE Automation Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32042
Common Vulnerability Exposure (CVE) ID: CVE-2023-32041
Windows Update Orchestrator Service Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32041
Common Vulnerability Exposure (CVE) ID: CVE-2023-32040
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32040
Common Vulnerability Exposure (CVE) ID: CVE-2023-32039
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32039
Common Vulnerability Exposure (CVE) ID: CVE-2023-32035
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32035
Common Vulnerability Exposure (CVE) ID: CVE-2023-32034
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32034
Common Vulnerability Exposure (CVE) ID: CVE-2023-33173
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-33173
Common Vulnerability Exposure (CVE) ID: CVE-2023-33172
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-33172
Common Vulnerability Exposure (CVE) ID: CVE-2023-33167
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-33167
Common Vulnerability Exposure (CVE) ID: CVE-2023-33166
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-33166
Common Vulnerability Exposure (CVE) ID: CVE-2023-33164
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-33164
Common Vulnerability Exposure (CVE) ID: CVE-2023-21756
Windows Win32k Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21756
CopyrightCopyright (C) 2023 Greenbone AG

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.