Windows MSHTML Platform Security Feature Bypass Vulnerability
References
Link | Resource |
---|---|
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36805 | Patch Vendor Advisory |
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36805 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
08 Apr 2025, 14:32
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:microsoft:windows_server_2022:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:* |
cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:* |
Information
Published : 2023-09-12 17:15
Updated : 2025-04-08 14:32
NVD link : CVE-2023-36805
Mitre link : CVE-2023-36805
CVE.ORG link : CVE-2023-36805
JSON object : View
Products Affected
microsoft
- windows_server_2019
- windows_server_2022
- windows_10_21h2
- windows_11_22h2
- windows_server_2012
- windows_10_1809
- windows_11_21h2
- windows_server_2016
- windows_10_22h2
- windows_10_1607
- windows_10_1507
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')
NVD-CWE-noinfo