Microsoft NTLM是美国微软(Microsoft)公司的一个在包括运行Windows操作系统的系统以及独立系统在内的网络上使用的身份验证协议。 Microsoft NTLM存在安全漏洞。攻击者利用该漏洞执行欺骗攻击。以下产品和版本受到影响:Windows Server 2019,Windows Server 2019 (Server Core installation),Windows Server 2022,Windows Server 2022 (Server Core installati
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | CVE-2024-43451 is a Windows NTLM vulnerability that allows an attacker to force authentication and capture NTLM hashes by using malicious shortcuts. | https://github.com/RonF98/CVE-2024-43451-POC | POC Details |
No public POC found.
Login to generate AI POC| CVE-2024-43602 | 9.9 CRITICAL | Azure CycleCloud Remote Code Execution Vulnerability |
| CVE-2024-43498 | 9.8 CRITICAL | .NET and Visual Studio Remote Code Execution Vulnerability |
| CVE-2024-43639 | 9.8 CRITICAL | Windows KDC Proxy Remote Code Execution Vulnerability |
| CVE-2024-43620 | 8.8 HIGH | Windows Telephony Service Remote Code Execution Vulnerability |
| CVE-2024-49006 | 8.8 HIGH | SQL Server Native Client Remote Code Execution Vulnerability |
| CVE-2024-43621 | 8.8 HIGH | Windows Telephony Service Remote Code Execution Vulnerability |
| CVE-2024-48996 | 8.8 HIGH | SQL Server Native Client Remote Code Execution Vulnerability |
| CVE-2024-43624 | 8.8 HIGH | Windows Hyper-V Shared Virtual Disk Elevation of Privilege Vulnerability |
| CVE-2024-43635 | 8.8 HIGH | Windows Telephony Service Remote Code Execution Vulnerability |
| CVE-2024-43622 | 8.8 HIGH | Windows Telephony Service Remote Code Execution Vulnerability |
| CVE-2024-48998 | 8.8 HIGH | SQL Server Native Client Remote Code Execution Vulnerability |
| CVE-2024-48999 | 8.8 HIGH | SQL Server Native Client Remote Code Execution Vulnerability |
| CVE-2024-49000 | 8.8 HIGH | SQL Server Native Client Remote Code Execution Vulnerability |
| CVE-2024-49002 | 8.8 HIGH | SQL Server Native Client Remote Code Execution Vulnerability |
| CVE-2024-49001 | 8.8 HIGH | SQL Server Native Client Remote Code Execution Vulnerability |
| CVE-2024-49003 | 8.8 HIGH | SQL Server Native Client Remote Code Execution Vulnerability |
| CVE-2024-49004 | 8.8 HIGH | SQL Server Native Client Remote Code Execution Vulnerability |
| CVE-2024-49005 | 8.8 HIGH | SQL Server Native Client Remote Code Execution Vulnerability |
| CVE-2024-49007 | 8.8 HIGH | SQL Server Native Client Remote Code Execution Vulnerability |
| CVE-2024-49009 | 8.8 HIGH | SQL Server Native Client Remote Code Execution Vulnerability |
Showing top 20 of 89 CVEs. View all on vendor page → →
No comments yet