CVE-2023-36899

Scores

EPSS

0.700medium70.0%
0%20%40%60%80%100%

Percentile: 70.0%

CVSS

8.8high3.x
0246810

CVSS Score: 8.8/10

All CVSS Scores

CVSS 3.x
8.8

Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

ASP.NET Elevation of Privilege Vulnerability

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

msrcnvd

CWEs

CWE-20

Related Vulnerabilities

Exploits

Exploit ID: CVE-2023-36899

Source: github-poc

URL: https://github.com/midisec/CVE-2023-36899

Vulnerable Software (49)

Type: Configuration

Vendor: *

Product: .net_framework

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:.net_framework:4.8:*:*:*:*:*:*:*",          "vulnerable": true        }      ],      "operator": "...

Source: nvd

Type: Configuration

Vendor: *

Product: .net_framework

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:.net_framework:4.6.2:*:*:*:*:*:*:*",          "vulnerable": true        },        {          "cpe2...

Source: nvd

Type: Configuration

Vendor: *

Product: .net_framework

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:.net_framework:4.6.2:*:*:*:*:*:*:*",          "vulnerable": true        }      ],      "operator":...

Source: nvd

Type: Configuration

Vendor: *

Product: .net_framework

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:.net_framework:3.5:*:*:*:*:*:*:*",          "vulnerable": true        },        {          "cpe23u...

Source: nvd

Type: Configuration

Vendor: *

Product: .net_framework

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:.net_framework:3.5:*:*:*:*:*:*:*",          "vulnerable": true        },        {          "cpe23u...

Source: nvd

Type: Configuration

Vendor: *

Product: .net_framework

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:.net_framework:2.0:sp2:*:*:*:*:*:*",          "vulnerable": true        }      ],      "operator":...

Source: nvd

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10.0.10240.20107

Operating System: Windows 10240 build 20107

Identifier: KB5029259

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB5029847

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 4.8.04654.06

Operating System: Windows 4654 build 6

Identifier: KB5029655

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 4.8.04667.03

Operating System: Windows 4667 build 3

Identifier: KB5030186

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 4.8.04654.08

Operating System: Windows 4654 build 8

Identifier: KB5029653

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 4.8.04654.07

Operating System: Windows 4654 build 7

Identifier: KB5029568

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 4.8.04667.02

Operating System: Windows 4667 build 2

Identifier: KB5030184

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 3.5.4654.08

Operating System: Windows 4654 build 8

Identifier: KB5029647

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 4.8.04667.03

Operating System: Windows 4667 build 3

Identifier: KB5030178

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 4.8.09176.01

Operating System: Windows 9176 build 1

Identifier: KB5029650

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB5029848

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 4.8.04667.02

Operating System: Windows 4667 build 2

Identifier: KB5030181

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 4.8.4654.06

Operating System: Windows 4654 build 6

Identifier: KB5028952

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 4.8

Operating System: Windows 4 build 8

Identifier: KB5029924

Source: msrc