NA

CVE-2023-36047

Published: 14/11/2023 Updated: 20/11/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

Windows Authentication Elevation of Privilege Vulnerability

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows server 2019 -

microsoft windows server 2022 -

microsoft windows 10 1809

microsoft windows 10 21h2

microsoft windows 10 22h2

microsoft windows 11 21h2

microsoft windows 11 22h2

microsoft windows 11 23h2

Github Repositories

UserManagerEoP This is exploit for CVE-2023-36047 i found last year The flaw was in usermanager service which copied files from user controllable directory which results in EoP After first fix MSRC only fixed write part of copy operation while read operation was still performed in NT AUTHORITY\SYSTEM context This can be abused to SAM/SYSTEM/SECURITY hives from shadow copy, t