iSCSI Target WMI Provider Remote Code Execution Vulnerability
🔗 CVE IDs covered (1)
📋 Description
According to the CVSS metric, the attack vector is local (AV:L). Why does the CVE title indicate that this is a remote code execution? The word Remote in the title refers to the location of the attacker. This type of exploit is sometimes referred to as Arbitrary Code Execution (ACE). The attack itself is carried out locally. This means an attacker or victim needs to execute code from the local machine to exploit the vulnerability.
🎯 Affected products8
- Windows Server 2012 R2
- Windows Server 2012 R2 (Server Core installation)
- Windows Server 2016
- Windows Server 2016 (Server Core installation)
- Windows Server 2019
- Windows Server 2019 (Server Core installation)
- Windows Server 2022
- Windows Server 2022 (Server Core installation)
✅ Remediation
KB5027222 (Security Update) — fixed build 10.0.17763.4499 KB5027225 (Security Update) — fixed build 10.0.20348.1787 KB5027319 (Security Hotpatch Update) — fixed build 10.0.20348.1784 KB5027219 (Security Update) — fixed build 10.0.14393.5989 KB5027271 (Monthly Rollup) — fixed build 6.3.9600.21013 KB5027282 (Security Only) — fixed build 6.3.9600.21013
🔗 References (13)
- advisoryhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-29367
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5027222
- referencehttps://support.microsoft.com/help/5027222
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5027225
- referencehttps://support.microsoft.com/help/5027225
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5027319
- referencehttps://support.microsoft.com/help/5027319
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5027219
- referencehttps://support.microsoft.com/help/5027219
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5027271
- referencehttps://support.microsoft.com/help/5027271
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5027282
- referencehttps://support.microsoft.com/help/5027282