VDB

CISA-2024-38240

CISA-2024-38240 PUBLISHED CVSS 8.1 HIGH

Reported by microsoft · Published September 10, 2024

Windows Remote Access Connection Manager Elevation of Privilege Vulnerability

Risk Scores

CVSS 3.1
8.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C

Affected Products

VendorProductVersions
MicrosoftWindows 10 Version 180910.0.17763.0
MicrosoftWindows Server 201910.0.17763.0
MicrosoftWindows Server 2019 (Server Core installation)10.0.17763.0
MicrosoftWindows Server 202210.0.20348.0
MicrosoftWindows 11 version 21H210.0.0
MicrosoftWindows 10 Version 21H210.0.19043.0
MicrosoftWindows 11 version 22H210.0.22621.0
MicrosoftWindows 10 Version 22H210.0.19045.0
MicrosoftWindows 11 version 22H310.0.22631.0
MicrosoftWindows 11 Version 23H210.0.22631.0
MicrosoftWindows Server 2022, 23H2 Edition (Server Core installation)10.0.25398.0
MicrosoftWindows 11 Version 24H210.0.26100.0
MicrosoftWindows 10 Version 150710.0.10240.0
MicrosoftWindows 10 Version 160710.0.14393.0
MicrosoftWindows Server 201610.0.14393.0
MicrosoftWindows Server 2016 (Server Core installation)10.0.14393.0
MicrosoftWindows Server 2012 R26.3.9600.0
MicrosoftWindows Server 2012 R2 (Server Core installation)6.3.9600.0
MicrosoftWindows 10 Version 160710.0.14393.0, 10.0.14393.0
microsoftwindows_10_150710.0.10240.0, 10.0.10240.0

…and 30 more

Timeline

  • Sep 10, 2024 CVE Published
  • Dec 31, 2024 CVE Updated
  • Apr 26, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›