CVE-2023-36802

Exploited in the Wild ✓ Confirmed 0-Day ★ Google Project Zero
Triaged: March 3, 2026 4 articles

EPSS Score

Source: FIRST.org · 2026-05-24
75.43%
probability
This CVE has a 75.43% probability of being exploited in the next 30 days.
0% Top 98.9th percentile of all CVEs 100%
CVSS score unavailable
Neither CIRCL nor NVD returned a CVSS score for this CVE. View on VulnerabilityLookup ↗

Description

Project Zero
Streaming service proxy elevation of privilege

Attack Intelligence

Google Project Zero

Patched
Sept. 12, 2023
Reported by
Quan Jin(@jq0904) & ze0r with DBAPPSecurity WeBin Lab, Valentina Palmiotti with IBM X-Force, Microsoft Threat Intelligence, Microsoft Security Response Center
Root Cause Analysis
https://googleprojectzero.github.io/0days-in-the-wild//0day-RCAs/2023/CVE-2023-36802.html

Exploits & PoC

x0rb3l/CVE-2023-36802-MSKSSRV-LPE

PoC for CVE-2023-36802 Microsoft Kernel Streaming Service Proxy

36
1 repo — triés par ⭐ Rechercher sur GitHub ↗

Signal Intelligence

Confidence
78%
EPSS 75.43%
Mentions 4
Last Seen Sep 13, 2023

CNA Information

Analyst Note

CVE-2023-36802 is confirmed as a legitimate elevation of privilege vulnerability in Windows 10 affecting the Microsoft Streaming Service Proxy with a HIGH CVSS score of 7.8. It was documented by CERT-EU in their September 2023 Patch Tuesday advisory, providing authoritative vendor confirmation despite limited public coverage.

Threat Actors 3

Cobalt
apt_group Financial crime 🇷🇺 RU
TA505
apt_group Financial gain 🇷🇺 RU
Earth Lamia
apt_group Information theft and espionage 🇨🇳 CN

Triage Info

Decided atMar 03, 2026