Microsoft Sudo for Windows是美国微软(Microsoft)公司的用户(以管理员身份)直接从 Windows 上的未提升权限的控制台会话运行提升的命令的一种新方式。 Microsoft Sudo for Windows存在安全漏洞。攻击者利用该漏洞执行欺骗攻击。以下产品和版本受到影响:Windows 11 Version 24H2 for ARM64-based Systems,Windows 11 Version 24H2 for x64-based Systems。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Windows 11 Version 24H2 | 10.0.26100.0< 10.0.26100.2033 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Windows 11 Version 24H2 | 10.0.26100.0 ~ 10.0.26100.2033 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-43468 | 9.8 CRITICAL | Microsoft Configuration Manager Remote Code Execution Vulnerability |
| CVE-2024-38124 | 9.0 CRITICAL | Windows Netlogon Elevation of Privilege Vulnerability |
| CVE-2024-43611 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-43549 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-43517 | 8.8 HIGH | Microsoft ActiveX Data Objects Remote Code Execution Vulnerability |
| CVE-2024-43488 | 8.8 HIGH | Visual Studio Code extension for Arduino Remote Code Execution Vulnerability |
| CVE-2024-43453 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-43564 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-38212 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-38265 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-43607 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-43608 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-43592 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-38179 | 8.8 HIGH | Azure Stack Hyperconverged Infrastructure (HCI) Elevation of Privilege Vulnerability |
| CVE-2024-43518 | 8.8 HIGH | Windows Telephony Server Remote Code Execution Vulnerability |
| CVE-2024-43593 | 8.8 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-43599 | 8.8 HIGH | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2024-43533 | 8.8 HIGH | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2024-43532 | 8.8 HIGH | Remote Registry Service Elevation of Privilege Vulnerability |
| CVE-2024-43519 | 8.8 HIGH | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
Showing top 20 of 117 CVEs. View all on vendor page → →
No comments yet