Microsoft 3D Viewer app Multiple Remote Code Execution Vulnerabilities (September 2023)

high Nessus Plugin ID 181297

Version 1.6

Mar 27, 2024, 7:16 PM

  • Detection (store app vuln plugins will require paranoia when we are unable to determine path)
  • Logic Changes

Plugin Feed: 202403271916

Version 1.4

Oct 23, 2023, 4:39 PM

  • CVSSv2 score source (changed from "CVE-2022-41303" to "CVE-2023-36760")

Plugin Feed: 202310231639

Version 1.3

Oct 18, 2023, 10:20 PM

  • Plugin metadata (Removed incorrect IAVA reference.)

Plugin Feed: 202310182220

Version 1.2

Sep 15, 2023, 12:17 PM

  • IAVM reference
  • STIG Severity (set to "I")

Plugin Feed: 202309151217

Version 1.1

Sep 13, 2023, 4:22 PM

  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:U/RL:OF/RC:C". "CVSSv3 temporal vector" set to "CVSS:3.0/E:U/RL:O/RC:C")
  • CVSSv2 score source (changed from "CVE-2023-36739" to "CVE-2022-41303")
  • CVSSv3 score source (set to "CVE-2022-41303")
  • Exploit attributes ("Exploit available" set to "False". "Exploitability ease" set to "No known exploits are available")

Plugin Feed: 202309131622

Version 1.0

Sep 13, 2023, 1:11 AM

  • New

Plugin Feed: 202309130111

* Changelogs are generally available for changes made after Nov 1, 2022