CVE-2024-30092
7.5
Vector
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.6 / Impact: 5.9
Source: NVD
Description
Windows Hyper-V Remote Code Execution Vulnerability
Affected (12)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 10.0.10240.20796 | |
| Before 10.0.14393.7428 | |
| Before 10.0.17763.6414 | |
| Before 10.0.19044.5011 | |
| Before 10.0.19045.5011 | |
| Before 10.0.22621.4317 | |
| Before 10.0.22631.4317 | |
| Before 10.0.26100.2033 | |
| Before 10.0.14393.7428 | |
| Before 10.0.17763.6414 | |
| Before 10.0.20348.2762 | |
| Before 10.0.25398.1189 |
Related CWEs
CWE-20
Improper Input Validation
The product receives input or data, but it does
not validate or incorrectly validates that the input has the
properties that are required to process the data safely and
correctly.
CWE-829
Inclusion of Functionality from Untrusted Control Sphere
The product imports, requires, or includes executable functionality (such as a library) from a source that is outside of the intended control sphere.
References (1)
Source: secure@microsoft.com
Vendor Advisory
Timeline
No history available yet.