CVE detail
CVE-2023-36802
Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 23.0 · diversity 14.5 · KEV 25.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
9 source links · newest first
Introduction There are already good writeups on CVE-2023-36802, a type confusion bug in Microsoft’s Streaming Service Proxy driver mskssrv.sys. Most of them were written before recent mitigations closed off the usual paths. This one was written after. The bug was known. The patch w
newsstarlabs.sgJun 24, 2026, 12:00 AM- Microsoft fixes RCE vulnerabilities in MSMQ, Outlook (CVE-2024-30080, CVE-2024-30103)Help Net Security
June 2024 Patch Tuesday is here and Microsoft has delivered fixes for a critical MSMQ flaw (CVE-2024-30080) and a RCE vulnerability in Microsoft Outlook (CVE-2024-30103). 49 CVE-numbered vulnerabilities have been fixed in total, none of which have been exploited in the wild as zero-days. About CVE-2024-30080 and CVE-2024-30103 CVE-2024-30080 is a use after free flaw affecting Microsoft Message Queuing (MSMQ) and can be exploited by unauthenticated attackers by sending a specially crafted malicious MSMQ packet … More →
newswww.helpnetsecurity.comJun 11, 2024, 7:49 PM - Raspberry Robin spotted using two new 1-day LPE exploitsSecurity Affairs
Raspberry Robin continues to evolve, it was spotted using two new one-day exploits for vulnerabilities either Discord to host samples. Raspberry Robin is a Windows worm discovered by cybersecurity researchers from Red Canary, the malware propagates through removable USB devices. The malicious code uses Windows Installer to reach out to QNAP-associated domains and download a malicious […]
newssecurityaffairs.comFeb 11, 2024, 7:37 PM - Raspberry Robin Keeps Riding the Wave of Endless 1-DaysCheck Point Research
Key Findings Introduction Raspberry Robin is a widely distributed worm first reported by Red Canary in 2021. Its capabilities and evasions in addition to its very active distribution made it one of the most intriguing malware out there. We at Check Point Research published an article a couple of months ago using Raspberry Robin as an example […]
vendorresearch.checkpoint.comFeb 7, 2024, 1:02 PM - 18th September – Threat Intelligence ReportCheck Point Research
For the latest discoveries in cyber research for the week of 11th September, please download our Threat_Intelligence Bulletin. TOP ATTACKS AND BREACHES The American resort, casino and hotel chain MGM has suffered a cyber-attack that resulted in widespread disruption across the company’s hotels and casinos, and has shut down its internal networks as a precaution. […]
vendorresearch.checkpoint.comSep 18, 2023, 2:48 PM Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: The blueprint for a highly effective EASM solution In this Help Net Security interview, Adrien Petit, CEO at Uncovery, discusses the benefits that organizations can derive from implementing external attack surface management (EASM) solutions, the essential capabilities an EASM solution should possess, and how it deals with uncovering hidden systems. How should SMBs navigate the phishing minefield? In this Help … More →
newswww.helpnetsecurity.comSep 17, 2023, 8:00 AMMicrosoft September 2023 Patch Tuesday addressed 59 new flaws, including two vulnerabilities under active attack. Microsoft September 2023 Patch Tuesday security updates addressed 59 vulnerabilities, including two actively exploited zero-day. The flaws addressed by the company impact Microsoft Windows and Windows Components; Exchange Server; Office and Office Components; .NET and Visual Studio; Azure; Microsoft Dynamics; […]
newssecurityaffairs.comSep 13, 2023, 5:07 AM- Microsoft, Adobe fix zero-days exploited by attackers (CVE-2023-26369, CVE-2023-36761, CVE-2023-36802)Help Net Security
September 2023 Patch Tuesday is here, with fixes for actively exploited vulnerabilities in Adobe Acrobat and Reader (CVE-2023-26369), Microsoft Word (CVE-2023-36761), and Microsoft Streaming Service Proxy (CVE-2023-36802). Microsoft vulnerabilities of note Microsoft has delivered fixes for 61 CVE-numbered flaws: 5 critical, 55 important, and one of moderate severity. Patches for CVE-2023-36761, an information disclosure bug affecting Word, should be quickly deployed, since Microsoft Threat Intelligence detected its exploitation by attackers (though the company did not … More →
newswww.helpnetsecurity.comSep 12, 2023, 6:57 PM Microsoft’s struggles with zero-day exploits rolled into a new month with a fresh Patch Tuesday warning about malware attacks in the wild.
newswww.securityweek.comSep 12, 2023, 6:13 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2024-43599CVSS 8.8 · High
Remote Desktop Client Remote Code Execution Vulnerability
- CVE-2024-43582CVSS 8.1 · High
Remote Desktop Protocol Server Remote Code Execution Vulnerability
- CVE-2024-43570CVSS 6.4 · Medium
Windows Kernel Elevation of Privilege Vulnerability
- CVE-2024-43556CVSS 7.8 · High
Windows Graphics Component Elevation of Privilege Vulnerability
- CVE-2024-43535CVSS 7.0 · High
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
- CVE-2024-43509CVSS 7.8 · High
Windows Graphics Component Elevation of Privilege Vulnerability