CVE-2023-36033

HIGH KEV

Windows DWM Core Library - Privilege Escalation

Title source: llm

Description

Windows DWM Core Library Elevation of Privilege Vulnerability

Scores

CVSS v3 7.8
EPSS 0.0091
EPSS Percentile 75.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CISA KEV 2023-11-14
VulnCheck KEV 2023-11-14
InTheWild.io 2023-11-14
ENISA EUVD EUVD-2023-40017
CWE
CWE-119 CWE-822
Status published
Products (9)
microsoft/windows_10_1809 < 10.0.17763.5122 (3 CPE variants)
microsoft/windows_10_21h2 < 10.0.19041.3693 (3 CPE variants)
microsoft/windows_10_22h2 < 10.0.19045.3693 (3 CPE variants)
microsoft/windows_11_21h2 < 10.0.22000.2600 (2 CPE variants)
microsoft/windows_11_22h2 < 10.0.22621.2715 (2 CPE variants)
microsoft/windows_11_23h2 < 10.0.22621.2715 (2 CPE variants)
microsoft/windows_server_2019 < 10.0.17763.5122
microsoft/windows_server_2022 < 10.0.20348.2113
microsoft/windows_server_2022_23h2 < 10.0.25398.531
Published Nov 14, 2023
KEV Added Nov 14, 2023
Tracked Since Feb 18, 2026