CVE-2024-38124

CRITICAL

Windows Netlogon < - Privilege Escalation

Title source: llm

Description

Windows Netlogon Elevation of Privilege Vulnerability

Exploits (1)

nomisec SCANNER
by tadash10 · poc
https://github.com/tadash10/Detailed-Analysis-and-Mitigation-Strategies-for-CVE-2024-38124-and-CVE-2024-43468

Scores

CVSS v3 9.0
EPSS 0.0033
EPSS Percentile 56.0%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Details

CWE
CWE-287
Status published
Products (8)
microsoft/windows_server_2008 (2 CPE variants)
microsoft/windows_server_2008 r2 sp1
microsoft/windows_server_2012
microsoft/windows_server_2012 r2
microsoft/windows_server_2016 < 10.0.14393.7428
microsoft/windows_server_2019 < 10.0.17763.6414
microsoft/windows_server_2022 < 10.0.20348.2762
microsoft/windows_server_2022_23h2 < 10.0.25398.1189
Published Oct 08, 2024
Tracked Since Feb 18, 2026