CVE-2024-21319

CVSS 3.1 Score 6.8 of 10 (medium)

Details

Published Jan 9, 2024
Updated: May 29, 2024
CWE ID 20

Summary

CVE-2024-21319 is a newly disclosed vulnerability affecting Microsoft's Identity Platform. This issue represents a denial-of-service (DoS) threat, allowing an attacker to cause service disruptions by sending specific requests to targeted servers. The vulnerability could potentially be exploited to exhaust server resources, making it important for organizations using Microsoft Identity to apply relevant patches or mitigations promptly. The exact cause and potential impact of this vulnerability are still under investigation, but it highlights the need for continuous security monitoring and timely updates to protect against DoS attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft .NET Framework
  • Microsoft Visual Studio 2022

Affected Vendors

  • Microsoft