CVE-2024-38153

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Aug 13, 2024
Updated: Aug 14, 2024
CWE ID 367

Summary

CVE-2024-38153 is a newly disclosed Windows Kernel vulnerability that could potentially allow an attacker to elevate their privileges. By exploiting this EoP (Elevation of Privilege) weakness, an attacker could gain administrative access to a system, enabling them to install unauthorized software, modify or delete data, and create new user accounts with full system rights. This vulnerability poses a significant risk to organizations and individuals using affected Windows versions, necessitating prompt patching to mitigate potential damage.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows
  • Microsoft Windows 11
  • Microsoft Windows Server 2008

Affected Vendors

  • Microsoft