7.5

CVE-2023-21683

Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability

Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MicrosoftWindows 10 1607 Version- HwPlatformx64
MicrosoftWindows 10 1607 Version- HwPlatformx86
MicrosoftWindows 10 1809 Version- HwPlatformarm64
MicrosoftWindows 10 1809 Version- HwPlatformx64
MicrosoftWindows 10 1809 Version- HwPlatformx86
MicrosoftWindows 10 20h2 Version- HwPlatformarm64
MicrosoftWindows 10 20h2 Version- HwPlatformx64
MicrosoftWindows 10 20h2 Version- HwPlatformx86
MicrosoftWindows 10 21h2 Version- HwPlatformarm64
MicrosoftWindows 10 21h2 Version- HwPlatformx64
MicrosoftWindows 10 21h2 Version- HwPlatformx86
MicrosoftWindows 10 22h2 Version- HwPlatformarm64
MicrosoftWindows 10 22h2 Version- HwPlatformx64
MicrosoftWindows 10 22h2 Version- HwPlatformx86
MicrosoftWindows 11 21h2 Version- HwPlatformarm64
MicrosoftWindows 11 21h2 Version- HwPlatformx64
MicrosoftWindows 11 22h2 Version- HwPlatformarm64
MicrosoftWindows 11 22h2 Version- HwPlatformx64
MicrosoftWindows 8.1 Version- HwPlatformx64
MicrosoftWindows 8.1 Version- HwPlatformx86
MicrosoftWindows Rt 8.1 Version-
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 34.28% 0.969
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
secure@microsoft.com 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-476 NULL Pointer Dereference

The product dereferences a pointer that it expects to be valid but is NULL.