CVE-2023-21768 is an Elevation of Privilege vulnerability affecting the Windows Ancillary Function Driver for WinSock in Windows 11 and Windows Server 2022. With a CVSS score of 7.8 (HIGH), it allows a local attacker to gain high impact to confidentiality, integrity, and availability with low attack complexity. While not actively exploited in the wild (KEV: No), a Metasploit module exists, and it has garnered significant community discussion and media coverage, indicating potential for future exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
21h2CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_11:21h2:*:*:*:*:*:arm64:* | ||
21h2CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_11:21h2:*:*:*:*:*:x64:* | ||
22h2CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_11:22h2:*:*:*:*:*:arm64:* | ||
22h2CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_11:22h2:*:*:*:*:*:x64:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2022:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.