CVE-2023-21563

Description

BitLocker Security Feature Bypass Vulnerability

Risk Information

Base Score
6.8
MODERATE
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.675

Associated Vulnerability

VulnerabilityOS Platform
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 10 Version 22H2 for x86-based Systems (KB5022282)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 10 Version 22H2 for x64-based Systems (KB5022282)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 10 Version 21H2 for x86-based Systems (KB5022282)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 10 Version 21H2 for x64-based Systems (KB5022282)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 10 Version 20H2 for x64-based Systems (KB5022282)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 10 Version 20H2 for x86-based Systems (KB5022282)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 10 Version 1809 for x64-based Systems (KB5022286)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 10 Version 1809 for x86-based Systems (KB5022286)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows Server 2019 for x64-based Systems (KB5022286)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 11 for ARM64-based Systems (KB5022287)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 11 for x64-based Systems (KB5022287)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 10 Version 1607 for x64-based Systems (KB5022289)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows Server 2016 for x64-based Systems (KB5022289)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 10 Version 1607 for x86-based Systems (KB5022289)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Microsoft server operating system version 21H2 for x64-based Systems (KB5022291)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 10 Version 1507 for x64-based Systems (KB5022297)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 10 Version 1507 for x86-based Systems (KB5022297)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 11 Version 22H2 for x64-based Systems (KB5022303)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 11 Version 22H2 for ARM64-based Systems (KB5022303)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows Server 2008 R2 for x64-based Systems (KB5022338) (ESU)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 7 for x64-based Systems (KB5022338) (ESU)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 7 for x86-based Systems (KB5022338) (ESU)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows Server 2008 R2 for x64-based Systems (KB5022339) (ESU)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 7 for x64-based Systems (KB5022339) (ESU)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 7 for x86-based Systems (KB5022339) (ESU)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows Server 2012 for x64-based Systems (KB5022343)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 8.1 for x86-based Systems (KB5022346)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 8.1 for x64-based Systems (KB5022346)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows Server 2012 R2 for x64-based Systems (KB5022346)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows Server 2012 for x64-based Systems (KB5022348)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows Server 2012 R2 for x64-based Systems (KB5022352)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 8.1 for x86-based Systems (KB5022352)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 8.1 for x64-based Systems (KB5022352)Windows
Remote Procedure Call Runtime Denial of Service Vulnerability for Windows Server 2008 for x86-based Systems (KB5022340) (ESU)Windows
Remote Procedure Call Runtime Denial of Service Vulnerability for Windows Server 2008 for x64-based Systems (KB5022340) (ESU)Windows
Remote Procedure Call Runtime Denial of Service Vulnerability for Windows Server 2008 for x64-based Systems (KB5022353) (ESU)Windows
Remote Procedure Call Runtime Denial of Service Vulnerability for Windows Server 2008 for x86-based Systems (KB5022353) (ESU)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 11 for ARM64-based Systems (KB5022287) (CVE-2023-21674)Windows
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability for Windows 11 Version 22H2 for ARM64-based Systems (KB5022303) (CVE-2023-21674)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-354452023-01 Cumulative Update for Windows 10 Version 22H2 for x86-based Systems (KB5022282) (CVE-2023-21674)
PATCH-354462023-01 Cumulative Update for Windows 10 Version 22H2 for x64-based Systems (KB5022282) (CVE-2023-21674)
PATCH-354472023-01 Cumulative Update for Windows 10 Version 21H2 for x86-based Systems (KB5022282) (CVE-2023-21674)
PATCH-354482023-01 Cumulative Update for Windows 10 Version 21H2 for x64-based Systems (KB5022282) (CVE-2023-21674)
PATCH-354492023-01 Cumulative Update for Windows 10 Version 20H2 for x64-based Systems (KB5022282) (CVE-2023-21674)
PATCH-354502023-01 Cumulative Update for Windows 10 Version 20H2 for x86-based Systems (KB5022282) (CVE-2023-21674)
PATCH-354562023-01 Cumulative Update for Windows 10 Version 1809 for x64-based Systems (KB5022286) (CVE-2023-21674)
PATCH-354572023-01 Cumulative Update for Windows 10 Version 1809 for x86-based Systems (KB5022286) (CVE-2023-21674)
PATCH-354582023-01 Cumulative Update for Windows Server 2019 for x64-based Systems (KB5022286) (CVE-2023-21674)
PATCH-354522023-01 Cumulative Update for Windows 11 for x64-based Systems (KB5022287) (CVE-2023-21674)
PATCH-354402023-01 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB5022289) (CVE-2023-21674)
PATCH-354412023-01 Cumulative Update for Windows Server 2016 for x64-based Systems (KB5022289) (CVE-2023-21674)
PATCH-354422023-01 Cumulative Update for Windows 10 Version 1607 for x86-based Systems (KB5022289) (CVE-2023-21674)
PATCH-354532023-01 Cumulative Update for Microsoft server operating system version 21H2 for x64-based Systems (KB5022291) (CVE-2023-21674)
PATCH-354432023-01 Cumulative Update for Windows 10 Version 1507 for x64-based Systems (KB5022297) (CVE-2023-21674)
PATCH-354442023-01 Cumulative Update for Windows 10 Version 1507 for x86-based Systems (KB5022297) (CVE-2023-21674)
PATCH-354542023-01 Cumulative Update for Windows 11 Version 22H2 for x64-based Systems (KB5022303) (CVE-2023-21674)
PATCH-354632023-01 Security Monthly Quality Rollup for Windows Server 2008 R2 for x64-based Systems (KB5022338) (ESU)
PATCH-354642023-01 Security Monthly Quality Rollup for Windows 7 for x64-based Systems (KB5022338) (ESU)
PATCH-354652023-01 Security Monthly Quality Rollup for Windows 7 for x86-based Systems (KB5022338) (ESU)
PATCH-354352023-01 Security Only Quality Update for Windows Server 2008 R2 for x64-based Systems (KB5022339) (ESU)
PATCH-354362023-01 Security Only Quality Update for Windows 7 for x64-based Systems (KB5022339) (ESU)
PATCH-354372023-01 Security Only Quality Update for Windows 7 for x86-based Systems (KB5022339) (ESU)
PATCH-354342023-01 Security Only Quality Update for Windows Server 2012 for x64-based Systems (KB5022343)
PATCH-354312023-01 Security Only Quality Update for Windows 8.1 for x86-based Systems (KB5022346) (CVE-2023-21674)
PATCH-354322023-01 Security Only Quality Update for Windows 8.1 for x64-based Systems (KB5022346) (CVE-2023-21674)
PATCH-354332023-01 Security Only Quality Update for Windows Server 2012 R2 for x64-based Systems (KB5022346) (CVE-2023-21674)
PATCH-354622023-01 Security Monthly Quality Rollup for Windows Server 2012 for x64-based Systems (KB5022348)
PATCH-354592023-01 Security Monthly Quality Rollup for Windows Server 2012 R2 for x64-based Systems (KB5022352) (CVE-2023-21674)
PATCH-354602023-01 Security Monthly Quality Rollup for Windows 8.1 for x86-based Systems (KB5022352) (CVE-2023-21674)
PATCH-354612023-01 Security Monthly Quality Rollup for Windows 8.1 for x64-based Systems (KB5022352) (CVE-2023-21674)
PATCH-354662023-01 Security Monthly Quality Rollup for Windows Server 2008 for x86-based Systems (KB5022340) (ESU)
PATCH-354672023-01 Security Monthly Quality Rollup for Windows Server 2008 for x64-based Systems (KB5022340) (ESU)
PATCH-354382023-01 Security Only Quality Update for Windows Server 2008 for x64-based Systems (KB5022353) (ESU)
PATCH-354392023-01 Security Only Quality Update for Windows Server 2008 for x86-based Systems (KB5022353) (ESU)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234