QID 92078

Date Published: 2023-11-15

QID 92078: Microsoft .NET Framework Update for November 2023

A Remote Code Execution Vulnerability exist in Microsoft .Net Framework.

Following KBs are covered in this detection:
5032004
5032336
5032337
5032197
5031989
5032343
5032342
5032344
5032186
5032341
5032185
5032340
5032007
5032199
5032339
5032338

This security update is rated Important for supported versions of Microsoft .NET Framework.
.NET Framework 2.0, 3.0, 3.5, 4.6.2, 4.7, 4.7.1, 4.7.2, 4.8, and 4.8.1

QID Detection Logic (Authenticated):
Checks for vulnerable file version of ntoskrnl.exe or Mscorlib.dll or System.core.dll or System.web.dll for the respective .Net Framework KBs

Successful exploitation may allow a attacker to perform Elevation of Privileges.

  • CVSS V3 rated as Critical - 8.8 severity.
  • CVSS V2 rated as High - 6.5 severity.
  • Solution
    Customers are advised to refer to CVE-2023-36049, CVE-2023-36560 for more details pertaining to these vulnerabilities.
    Vendor References

    CVEs related to QID 92078

    Software Advisories
    Advisory ID Software Component Link
    CVE-2023-36049 URL Logo msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36049
    CVE-2023-36560 URL Logo msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36560