7
CVE-2024-30090
- EPSS 20.93%
- Veröffentlicht 11.06.2024 17:15:57
- Zuletzt bearbeitet 21.11.2024 09:11:14
- Quelle secure@microsoft.com
- CVE-Watchlists
- Unerledigt
Microsoft Streaming Service Elevation of Privilege Vulnerability
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows 10 1507 Version < 10.0.10240.20680
Microsoft ≫ Windows 10 1607 Version < 10.0.14393.7070
Microsoft ≫ Windows 10 1809 Version < 10.0.17763.5936
Microsoft ≫ Windows 10 21h2 Version < 10.0.19044.4529
Microsoft ≫ Windows 10 22h2 Version < 10.0.19045.4529
Microsoft ≫ Windows 11 21h2 Version < 10.0.22000.3019
Microsoft ≫ Windows 11 22h2 Version < 10.0.22621.3737
Microsoft ≫ Windows 11 23h2 Version < 10.0.22631.3737
Microsoft ≫ Windows Server 2008 Version- Updatesp2 HwPlatformx64
Microsoft ≫ Windows Server 2008 Version- Updatesp2 HwPlatformx86
Microsoft ≫ Windows Server 2008 Versionr2 Updatesp1
Microsoft ≫ Windows Server 2012 Version-
Microsoft ≫ Windows Server 2012 Versionr2
Microsoft ≫ Windows Server 2016 Version < 10.0.14393.7070
Microsoft ≫ Windows Server 2019 Version < 10.0.17763.5936
Microsoft ≫ Windows Server 2022 Version < 10.0.20348.2522
Microsoft ≫ Windows Server 2022 23h2 Version < 10.0.25398.950
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 20.93% | 0.954 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| secure@microsoft.com | 7 | 1 | 5.9 |
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
CWE-822 Untrusted Pointer Dereference
The product obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer.