CVE-2023-28292 is a remote code execution vulnerability affecting Microsoft's Raw Image Extension and various versions of Windows 10 and 11. With a CVSS score of 7.8 (HIGH), successful exploitation requires user interaction (UI:R) and local access (AV:L), but can lead to high impact on confidentiality, integrity, and availability. While the vulnerability has been patched, there is no public exploit code available in Metasploit or ExploitDB, and it is not currently on CISA's KEV catalog. Despite limited community discussion, it received media coverage during Microsoft's April 2023 Patch Tuesday.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2.1.60611.0CPE matchmatch criteria | cpe:2.3:a:microsoft:raw_image_extension:*:*:*:*:*:*:*:* | ||
< 2.0.60612.0CPE matchmatch criteria | cpe:2.3:a:microsoft:raw_image_extension:*:*:*:*:*:*:*:* | ||
>= 2.1.0.0, < 2.1.60611.0CPE match | cpe:2.3:a:microsoft:raw_image_extension:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.