Vulnerabilities > Microsoft > Windows Server 2022 23H2

DATE CVE VULNERABILITY TITLE RISK
2023-11-28 CVE-2023-24023 Bluetooth BR/EDR devices with Secure Simple Pairing and Secure Connections pairing in Bluetooth Core Specification 4.2 through 5.4 allow certain man-in-the-middle attacks that force a short key length, and might lead to discovery of the encryption key and live injection, aka BLUFFS.
high complexity
bluetooth microsoft
6.8
2023-11-14 CVE-2023-36033 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft products
Windows DWM Core Library Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-119
7.8
2023-11-14 CVE-2023-36403 Unspecified vulnerability in Microsoft products
Windows Kernel Elevation of Privilege Vulnerability
local
high complexity
microsoft
7.0
2023-11-14 CVE-2023-36404 Unspecified vulnerability in Microsoft products
Windows Kernel Information Disclosure Vulnerability
local
low complexity
microsoft
5.5
2023-11-14 CVE-2023-36405 Unspecified vulnerability in Microsoft products
Windows Kernel Elevation of Privilege Vulnerability
local
high complexity
microsoft
7.0
2023-11-14 CVE-2023-36406 Unspecified vulnerability in Microsoft products
Windows Hyper-V Information Disclosure Vulnerability
local
low complexity
microsoft
5.5
2023-11-14 CVE-2023-36407 Unspecified vulnerability in Microsoft products
Windows Hyper-V Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.8
2023-11-14 CVE-2023-36408 Unspecified vulnerability in Microsoft products
Windows Hyper-V Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.8
2023-11-14 CVE-2023-36424 Unspecified vulnerability in Microsoft products
Windows Common Log File System Driver Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.8
2023-11-14 CVE-2023-36425 Unspecified vulnerability in Microsoft products
Windows Distributed File System (DFS) Remote Code Execution Vulnerability
network
high complexity
microsoft
8.0