CVE-2023-36566
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Oct 10, 2023
Updated: May 29, 2024
CWE ID 20
Summary
CVE-2023-36566 is a newly disclosed Denial of Service (DoS) vulnerability affecting Microsoft Common Data Model (CDM) SDK. The flaw allows an attacker to send malicious requests, leading the targeted system to consume excessive resources and potentially crashing the application. This vulnerability could impact organizations that have integrated Microsoft CDM SDK into their systems, potentially causing service disruptions and decreased productivity. It is recommended that affected parties apply the available patches as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Microsoft