Record summary

CVE-2023-28218 has a selected CVSS score of 7.0 (high).

Description

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

Description source: GitHub Advisory

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Mar 4, 2025 · VulnCheck
Reported exploitation
Observed · VulnCheck

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Oct 28, 2024 · Source: CVE List

Affected products and versions

Showing 12 of 22
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied
CVE List10.0.10240.0 to < 10.0.10240.19869affected
CVE List10.0.14393.0 to < 10.0.14393.5850affected
CVE List10.0.17763.0 to < 10.0.17763.4252affected
10.0.0 to < 10.0.17763.4252affected
CVE List10.0.0 to < 10.0.19042.2846affected
CVE List10.0.19043.0 to < 10.0.19044.2846affected
CVE List10.0.19045.0 to < 10.0.19045.2846affected
CVE List10.0.0 to < 10.0.22000.1817affected
CVE List10.0.22621.0 to < 10.0.22621.1555affected
CVE List6.0.6003.0 to < 6.0.6003.22015affected
CVE List6.1.7601.0 to < 6.1.7601.26466affected

Windows Server 2008 R2 Service Pack 1 (Server Core installation)

Browse Microsoft / Windows Server 2008 R2 Service Pack 1 (Server Core installation)
CVE List6.1.7601.0 to < 6.1.7601.26466affected

References

2