HIGH

CVE-2023-21823

Microsoft Windows 10 1507 2023-02-14 CVSS v3.1
CVSS
7.8
KEV

Description

Windows Graphics Component Remote Code Execution Vulnerability

Summary dbcve.org

This is a remote code execution vulnerability in a Windows graphics component (likely affecting GDI+ or related graphics rendering services). The vulnerability allows an attacker to execute arbitrary code by leveraging a flaw in how Windows processes graphic files or operations.

Mitigation

Apply the relevant Microsoft security update (KB) for CVE-2023-21823 to all affected Windows systems. Prioritize endpoint systems given the graphics component attack surface.

Patch Commit

Weakness (CWE)

CWE-190 Integer Overflow

EPSS Score

5.56%
Probability of exploitation in next 30 days
92.5th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE