HIGH
CVE-2023-21823
CVSS
7.8
KEV
Description
Windows Graphics Component Remote Code Execution Vulnerability
Summary dbcve.org
This is a remote code execution vulnerability in a Windows graphics component (likely affecting GDI+ or related graphics rendering services). The vulnerability allows an attacker to execute arbitrary code by leveraging a flaw in how Windows processes graphic files or operations.
Mitigation
Apply the relevant Microsoft security update (KB) for CVE-2023-21823 to all affected Windows systems. Prioritize endpoint systems given the graphics component attack surface.
Weakness (CWE)
CWE-190
Integer Overflow
EPSS Score
5.56%
Probability of exploitation in next 30 days
92.5th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.