CISA KEV · Known exploitedHigh

CVE-2023-23376

Microsoft Windows 10 Version 1809, Windows Server 2019, Windows Server 2019 (Server Core installation)

CVE-2023-23376 affects Microsoft Windows 10 Version 1809, Windows Server 2019, Windows Server 2019 (Server Core installation). Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

CVSS
7.8
EPSS
10.9%
95.4% percentile
CISA KEV
Listed
Published
2023.02.15
PRIORITY ASSESSMENT

Immediate review

CISA has listed this vulnerability in the Known Exploited Vulnerabilities catalog.

Known exploitationConfirmed by CISA KEV
Exploit probability10.9%
Technical severityCVSS 7.8

Vulnerability overview

CVE-2023-23376 affects Microsoft Windows 10 Version 1809, Windows Server 2019, Windows Server 2019 (Server Core installation). Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

Affected product and versions

Product
Microsoft Windows 10 Version 1809, Windows Server 2019, Windows Server 2019 (Server Core installation)
Affected versions
>= 10.0.17763.0 < 10.0.17763.4010, >= 10.0.0 < 10.0.17763.4010, >= 10.0.20348.0 < 10.0.20348.1547, >= 10.0.0 < 10.0.19042.2604, >= 10.0.0 < 10.0.22621.1574, >= 10.0.19043.0 < 10.0.19044.2604, >= 10.0.22621.0 < 10.0.22621.1265, >= 10.0.19045.0 < 10.0.19045.2604, >= 10.0.10240.0 < 10.0.10240.19747, >= 10.0.14393.0 < 10.0.14393.5717, >= 6.0.6003.0 < 6.0.6003.21915, >= 6.1.7601.0 < 6.1.7601.26366, >= 6.2.9200.0 < 6.2.9200.24116, >= 6.3.9600.0 < 6.3.9600.20821, < 10.0.10240.19747, < 10.0.14393.5717, < 10.0.17763.4010, < 10.0.19042.2604, < 10.0.19044.2604, < 10.0.19045.2604
Fixed versions
10.0.10240.19747, 10.0.14393.5717, 10.0.17763.4010, 10.0.19042.2604, 10.0.19044.2604, 10.0.19045.2604, 10.0.22000.1574, 10.0.22621.1265, 10.0.20348.1540

Recommended response sequence

Confirm exposure before applying a vendor-supported change.

Full remediation guide
CISA required action

Apply updates per vendor instructions.

Due date: 2023.03.07
  1. 1
    Identify

    Confirm that Microsoft Windows 10 Version 1809, Windows Server 2019, Windows Server 2019 (Server Core installation) and an affected version are present.

  2. 2
    Prioritize

    Combine exploitation signals with asset exposure and business criticality.

  3. 3
    Remediate

    Follow the vendor advisory or supported update path and preserve rollback options.

  4. 4
    Verify

    Recheck the version, service health, access paths, and relevant logs.

Technical data

CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE
CWE-122, CWE-787
KEV added
2023.02.14
Ransomware use
확인됨
CVE-2023-23376 — Microsoft Windows 10 Version 1809, Windows Server 2019, Windows Server 2019 (Server Core installation) | SECUFOCUS NOW