VDB
GCVE-110-NCSC-2024-392
GCVE-110-NCSC-2024-392
Advisory PublishedCVSS 7.8/10
Microsoft heeft kwetsbaarheden verholpen in Windows.
Weaknesses (CWE)
CWE-295Improper Certificate ValidationCWE-822Untrusted Pointer DereferenceCWE-908Use of Uninitialized ResourceCWE-400Uncontrolled Resource ConsumptionCWE-693Protection Mechanism FailureCWE-122Heap-based Buffer OverflowCWE-197Numeric Truncation ErrorCWE-20Improper Input ValidationCWE-636Not Failing Securely ('Failing Open')CWE-125Out-of-bounds ReadCWE-416Use After FreeCWE-601URL Redirection to Untrusted Site ('Open Redirect')CWE-212Improper Removal of Sensitive Information Before Storage or TransferCWE-79Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')CWE-73External Control of File Name or PathCWE-590Free of Memory not on the HeapCWE-190Integer Overflow or WraparoundCWE-59Improper Link Resolution Before File Access ('Link Following')CWE-367Time-of-check Time-of-use (TOCTOU) Race ConditionCWE-415Double FreeCWE-476NULL Pointer DereferenceCWE-118Incorrect Access of Indexable Resource ('Range Error')CWE-325Missing Cryptographic StepCWE-591Sensitive Data Storage in Improperly Locked MemoryCWE-707Improper NeutralizationCWE-250Execution with Unnecessary PrivilegesCWE-287Improper AuthenticationCWE-284Improper Access ControlCWE-835Loop with Unreachable Exit Condition ('Infinite Loop')CWE-253Incorrect Check of Function Return ValueCWE-121Stack-based Buffer OverflowCWE-770Allocation of Resources Without Limits or ThrottlingCWE-203Observable DiscrepancyCWE-862Missing AuthorizationCWE-126Buffer Over-readCWE-285Improper AuthorizationCWE-923Improper Restriction of Communication Channel to Intended Endpoints
Risk Scores
CVSS 3.1
7.8/10
High · CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| microsoft | windows_server_2008_r2_service_pack_1__server_core_installation_ | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_server_2008_r2_service_pack_1 | — | — |
| microsoft | windows_10_version_1507 | — | — |
| microsoft | windows_server_2022__23h2_edition__server_core_installation_ | — | — |
| microsoft | windows_server_2008__service_pack_2 | — | — |
| microsoft | windows_server_2016__server_core_installation_ | — | — |
| microsoft | windows_10_version_21h2 | — | — |
| microsoft | windows_11_version_23h2 | — | — |
| microsoft | windows | — | — |
| microsoft | windows_server_2008_service_pack_2 | — | — |
| microsoft | windows_server_2022 | — | — |
| microsoft | windows_server_2008 | — | — |
| microsoft | windows_11_version_22h2 | — | — |
| microsoft | remote_desktop_client_for_windows_desktop | — | — |
| microsoft | windows_11 | — | — |
| microsoft | azure_stack_hci | — | — |
| microsoft | windows_server_2019 | — | — |
| microsoft | windows_server_2019__server_core_installation_ | — | — |
| microsoft | windows_server_2022_23h2 | — | — |
| microsoft | windows_server_2012 | — | — |
| microsoft | windows_11_version_21h2 | — | — |
| microsoft | windows_server_2012_r2__server_core_installation_ | — | — |
| microsoft | windows_server_2016 | — | — |
| microsoft | windows_server_2012_r2 | — | — |
| microsoft | windows_10_version_1809 | — | — |
| microsoft | windows_server_2008_service_pack_2__server_core_installation_ | — | — |
| microsoft | windows_10_version_22h2 | — | — |
| microsoft | windows_11_version_22h3 | — | — |
| microsoft | windows_server_2012__server_core_installation_ | — | — |
| microsoft | windows_11_version_24h2 | — | — |
| microsoft | windows_10_version_1607 | — | — |
Aliases
CVE-2024-20659CVE-2024-30092CVE-2024-37976CVE-2024-37979CVE-2024-37982CVE-2024-37983CVE-2024-38029CVE-2024-38124CVE-2024-38129CVE-2024-38149CVE-2024-38179CVE-2024-38212CVE-2024-38261CVE-2024-38262CVE-2024-38265CVE-2024-43453CVE-2024-43456CVE-2024-43500CVE-2024-43501CVE-2024-43502CVE-2024-43506CVE-2024-43508CVE-2024-43509CVE-2024-43511CVE-2024-43512CVE-2024-43513CVE-2024-43514CVE-2024-43515CVE-2024-43516CVE-2024-43517CVE-2024-43518CVE-2024-43519CVE-2024-43520CVE-2024-43521CVE-2024-43522CVE-2024-43523CVE-2024-43524CVE-2024-43525CVE-2024-43526CVE-2024-43527CVE-2024-43528CVE-2024-43529CVE-2024-43532CVE-2024-43533CVE-2024-43534CVE-2024-43535CVE-2024-43536CVE-2024-43537CVE-2024-43538CVE-2024-43540CVE-2024-43541CVE-2024-43542CVE-2024-43543CVE-2024-43544CVE-2024-43545CVE-2024-43546CVE-2024-43547CVE-2024-43549CVE-2024-43550CVE-2024-43551CVE-2024-43552CVE-2024-43553CVE-2024-43554CVE-2024-43555CVE-2024-43556CVE-2024-43557CVE-2024-43558CVE-2024-43559CVE-2024-43560CVE-2024-43561CVE-2024-43562CVE-2024-43563CVE-2024-43564CVE-2024-43565CVE-2024-43567CVE-2024-43570CVE-2024-43571CVE-2024-43572CVE-2024-43573CVE-2024-43574CVE-2024-43575CVE-2024-43581CVE-2024-43582CVE-2024-43583CVE-2024-43584CVE-2024-43585CVE-2024-43589CVE-2024-43592CVE-2024-43593CVE-2024-43599CVE-2024-43607CVE-2024-43608CVE-2024-43611CVE-2024-43615CVE-2024-6197
References
Browse GCVE Records
74,585 records in the GCVE database · Updated July 24, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.