Rewterz
Rewterz Threat Advisory – CVE-2023-21806 – Microsoft Power BI Report Server Vulnerability
February 20, 2023
Rewterz
Rewterz Threat Advisory – Multiple Node.js Vulnerabilities
February 20, 2023

Rewterz Threat Advisory – Multiple Microsoft Defender Vulnerabilities

Severity

High

Analysis Summary

CVE-2023-21809 CVSS:7.8

Microsoft Defender for Endpoint could allow a remote attacker to bypass security restrictions. By persuading a victim to run a specially-crafted file, an attacker could exploit this vulnerability to bypass the Windows Defender Attack Surface Reduction blocking feature.

CVE-2023-23379 CVSS:6.4

Microsoft Defender for IoT could allow a local authenticated attacker to gain elevated privileges on the system. By executing a specially-crafted program, an authenticated attacker could exploit this vulnerability to gain administrative privileges.

Impact

  • Security Bypass
  • Privilege Escalation

Indicators Of Compromise

CVE

  • CVE-2023-21809
  • CVE-2023-23379

Affected Vendors

Microsoft

Affected Products

  • Microsoft Malware Protection Engine
  • Microsoft Defender for IoT

Remediation

Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.

CVE-2023-21809

CVE-2023-23379