CVE-2023-36884

GPTKB entity

Statements (19)
Predicate Object
gptkbp:instanceOf gptkb:security
gptkbp:affects gptkb:Microsoft_Windows
gptkb:Microsoft_Office
Microsoft 365 Apps
gptkbp:describes A remote code execution vulnerability in Microsoft Windows and Office products, exploited via specially crafted Office documents.
gptkbp:hasAttackVector gptkb:network_protocol
gptkbp:hasCVSSScore 8.3
gptkbp:hasCWE gptkb:CWE-94
gptkbp:hasSeverity High
gptkbp:hasType Remote Code Execution
https://www.w3.org/2000/01/rdf-schema#label CVE-2023-36884
gptkbp:isExploitedInTheWild true
gptkbp:mitigatedBy Apply Microsoft security updates
Disable preview in Windows Explorer
gptkbp:referencedIn https://nvd.nist.gov/vuln/detail/CVE-2023-36884
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36884
gptkbp:wasDisclosed 2023-07-11
gptkbp:bfsParent gptkb:APT3
gptkbp:bfsLayer 7