QID 92040

Date Published: 2023-07-12

QID 92040: Microsoft Windows Routing and Remote Access Service (RRAS) Remote Code Execution (RCE) Vulnerability for July 2023

Microsoft released an update to fix remote code execution vulnerability in Routing and Remote Access Service.

QID Detection Logic (Authenticated):

This QID checks for the "Routing and Remote Access" service is running and then check for file version of 'ntoskrnl.exe'.

Successful exploit could compromise Confidentiality, Integrity and Availability

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as Critical - 10 severity.
  • Solution

    CVEs related to QID 92040

    Software Advisories
    Advisory ID Software Component Link
    CVE-2023-35367 URL Logo msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35367