

Rewterz Threat Alert – Lazarus APT Group – Active IOCs
May 4, 2023
Rewterz Threat Advisory –CVE-2023-27999 – Fortinet FortiADC Vulnerability
May 4, 2023
Rewterz Threat Alert – Lazarus APT Group – Active IOCs
May 4, 2023
Rewterz Threat Advisory –CVE-2023-27999 – Fortinet FortiADC Vulnerability
May 4, 2023Severity
High
Analysis Summary
CVE-2023-28231
Microsoft Windows could allow a remote attacker within the local network to execute arbitrary code on the system, caused by a flaw in the DHCP Server Service component. By sending a specially crafted RPC call to the DHCP service, an attacker could exploit this vulnerability to execute arbitrary code on the system.
Impact
- Code Execution
Indicators Of Compromise
CVE
- CVE-2023-30441
Affected Vendors
Microsoft
Affected Products
- Microsoft Windows Server 2012
- Microsoft Windows Server 2012 R2
- Microsoft Windows Server 2016
- Microsoft Windows Server 2019
- Microsoft Windows Server (Server Core installation) 2019
- Microsoft Windows Server (Server Core installation) 2016
- Microsoft Windows Server (Server Core installation) 2012 R2
- Microsoft Windows Server (Server Core installation) 2012
- Microsoft Windows Server for X64-based systems 2008 R2 SP1
- Microsoft Windows Server for X64-based systems (Server Core installation) 2008 SP2
- Microsoft Windows Server for 32-bit systems (Server Core installation) 2008 SP2
- Microsoft Windows Server for 32-bit systems 2008 SP2
- Microsoft Windows Server for X64-based systems (Server Core installation) 2008 R2 SP1
- Microsoft Windows Server 2022
- Microsoft Windows Server (Server Core installation) 2022
- Microsoft Windows Server for X64-based systems 2008 SP2
Remediation
Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.