CVE-2023-38152

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Sep 12, 2023
Updated: May 29, 2024
CWE ID 668
CWE ID 126

Summary

CVE-2023-38152 denotes a vulnerability in the DHCP (Dynamic Host Configuration Protocol) Server Service. This issue permits an unauthenticated attacker to obtain sensitive information through targeted requests, potentially leading to network reconnaissance and further exploitation. The disclosed data includes server version information and other details, weakening the security posture of the affected system. Organizations using the impacted DHCP Server Service version are advised to apply the relevant patches or mitigations to prevent potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows Server 2008
  • Microsoft Windows Server 2012
  • Microsoft Windows Server 2016
  • Windows Server 2022
  • Microsoft Windows Server 2019

Affected Vendors

  • Microsoft