CVE-2024-21442

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Mar 12, 2024
Updated: Apr 11, 2024
CWE ID 170

Summary

CVE-2024-21442 is a newly disclosed vulnerability affecting Windows USB Print Drivers. This issue grants attackers local privilege escalation capabilities, enabling them to elevate their system access from standard user to administrator level. Successful exploitation could lead to the installation of unauthorized software, data theft, or other malicious activities. The vulnerability is currently unpatched, leaving affected systems at risk until a fix is released. It is recommended that users limit the installation of print drivers to trusted sources and monitor their systems for any suspicious behavior.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows 11
  • Microsoft Windows 10

Affected Vendors

  • Microsoft